IBM QRadar Suite Software and Cloud Pak for Security Sensitive Information Disclosure Vulnerability

Vulnerability

A vulnerability exists in IBM QRadar Suite Software versions 1.10.12.0 prior to 1.11.2.0 and IBM Cloud Pak for Security versions 1.10.0.0 prior to 1.10.11.0. This vulnerability could allow an unauthenticated user to access highly sensitive information stored in configuration files.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information, including passwords, stored in configuration files.

Remediation

Users are advised to upgrade to version 1.11.3.0 or later. Instructions for upgrading can be found in the IBM Cloud Pak for Security documentation.

Added: Sep 1, 2025, 7:22 PM
Updated: Sep 1, 2025, 7:22 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
2.5
exploitability
7.4
remediation
7.7
relevance
0.2
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.