IBM QRadar SOAR Plugin App Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability has been identified in the IBM QRadar SOAR Plugin App, affecting versions 1.0.0 through 5.6.0. This vulnerability could allow a remote attacker to traverse directories on the system by sending a specially crafted URL request that includes 'dot dot' sequences. This could enable the attacker to view arbitrary files on the system.

Impact

Exploitation of this vulnerability could lead to unauthorized access to files on the system, potentially exposing sensitive information.

Remediation

Users are advised to update to version 5.6.2 of the IBM SOAR QRadar Plugin App.

Added: Aug 20, 2025, 3:22 PM
Updated: Aug 20, 2025, 3:22 PM

Vulnerability Rating

Custom Algorithm
spread
1.4
impact
3.3
exploitability
4.9
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.