HIGH🇵🇱 Wersja polska

CVE-2025-25021

CVSS 7.2v3.1pub. 2025-06-03upd. 2025-08-12

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow a privileged execute code in case management script creation due to the improper generation of code.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
  • IBM Cloud Pak For Security

    APP
    Ibm
    1.10.0.0 – 1.10.11.0
  • IBM Qradar Suite

    APP
    Ibm
    1.10.12.0 – 1.11.2.0
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2025-25022CRITICAL9.6PL ✓same product

IBM QRadar Suite / Cloud Pak for Security: ujawnienie danych w plikach konfiguracyjnych

CVE-2021-20578CRITICAL9.8PL ✓same product

IBM Cloud Pak for Security — pominięcie uwierzytelniania (Auth Bypass)

CVE-2021-20538CRITICAL9.1PL ✓same product

Nieprawidłowa autoryzacja w IBM Cloud Pak for Security

CVE-2020-4627CRITICAL9.0PL ✓same product

CSV Injection w IBM Cloud Pak for Security umożliwia zdalne wykonanie kodu

CVE-2023-47726HIGH7.1same product

IBM QRadar Suite Software 1.10.12.0 through 1.10.21.0 and IBM Cloud Pak for Security 1.10.12.0 through 1.10.21...