IBM Security ReaQta EDR Improper SSL Certificate Validation Vulnerability Allowing Unauthorized Actions

Vulnerability

A vulnerability in IBM Security ReaQta EDR version 3.12 has been identified, allowing attackers to perform unauthorized actions due to improper validation of SSL certificates. This flaw could enable attackers to bypass security restrictions or spoof trusted entities by interfering with the communication path between the host and client.

Impact

Exploitation of this vulnerability could lead to unauthorized actions being performed within the application, potentially allowing attackers to bypass security controls or manipulate data.

Remediation

Users are advised to update to IBM Security QRadar EDR version 3.12.17. This update can be applied automatically, or users can choose to approve the update manually. For more information on the manual installation process, refer to the IBM Security QRadar EDR installation guide.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
5.0
exploitability
5.6
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.