IBM QRadar SIEM Improper Permission Vulnerability Allowing Unauthorized Actions on Configuration Files

Vulnerability

A vulnerability exists in IBM QRadar SIEM versions 7.5 through 7.5 Update Pack 13 Independent Fix 01, allowing local privileged users to perform unauthorized actions on configuration files. This issue arises from improper permission assignment, which could be exploited by users with elevated privileges.

Impact

Exploitation of this vulnerability could lead to unauthorized modifications or actions on critical configuration files, potentially disrupting system operations or security configurations.

Remediation

Users are advised to update to IBM QRadar SIEM version 7.5.0 Update Pack 13 Independent Fix 02. Instructions for downloading this update are available on the IBM Support Fix Central website.

Added: Sep 14, 2025, 1:21 PM
Updated: Sep 14, 2025, 1:21 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
3.0
remediation
7.7
relevance
0.5
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.