IBM QRadar SIEM Information Disclosure Vulnerability in Multi-Tenant Environments

Vulnerability

An information disclosure vulnerability has been identified in IBM QRadar SIEM versions 7.5.0 prior to 7.5.0 Update Package 15. This vulnerability allows an attacker with access to one tenant to retrieve hostname data from another tenant's account, potentially leading to unauthorized access to sensitive information.

Impact

Exploitation of this vulnerability could result in unauthorized access to hostname data from other tenants' accounts, allowing for potential information disclosure in multi-tenant environments.

Remediation

Users are advised to update to IBM QRadar SIEM version 7.5.0 Update Package 15. Instructions for downloading this update are available on the IBM Support Fix Central website.

Added: Mar 19, 2026, 3:21 AM
Updated: Mar 19, 2026, 3:21 AM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
0.6
exploitability
4.5
remediation
7.7
relevance
4.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.