IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.
References
Link | Resource |
---|---|
https://www.ibm.com/support/pages/node/7235432 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
12 Aug 2025, 20:00
Type | Values Removed | Values Added |
---|---|---|
First Time |
Ibm qradar Suite
Ibm cloud Pak For Security Ibm |
|
References | () https://www.ibm.com/support/pages/node/7235432 - Vendor Advisory | |
CPE | cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* |
04 Jun 2025, 14:54
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
03 Jun 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-03 16:15
Updated : 2025-08-12 20:00
NVD link : CVE-2025-25022
Mitre link : CVE-2025-25022
CVE.ORG link : CVE-2025-25022
JSON object : View
Products Affected
ibm
- qradar_suite
- cloud_pak_for_security
CWE
CWE-260
Password in Configuration File