CVE-2024-45636
published 2026-06-11CVE-2024-45636: IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.
PriorityP418medium4.4CVSS 3.1
AVLACLPRHUINSUCHINAN
EPSS
0.09%
0.8th percentile
IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | security_qradar_edr | >= 3.12 < 3.12.25 | 3.12.25 |
| ibm | security_qradar_edr | 3.12.0 – 3.12.24 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
IBM Security QRadar EDR up to 3.12.24 credentials storage
vuldb·2026-06-11·CVSS 4.1
CVE-2024-45636 [MEDIUM] IBM Security QRadar EDR up to 3.12.24 credentials storage
A vulnerability described as problematic has been identified in IBM Security QRadar EDR up to 3.12.24. This issue affects some unknown processing. Executing a manipulation can lead to unprotected storage of credentials.
This vulnerability is handled as CVE-2024-45636. It is possible to launch the attack on the local host. There is not any exploit available.
Upgrading the affected component is recommended.
GHSA
IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.
ghsa_unreviewed·2026-06-11
CVE-2024-45636 [MEDIUM] CWE-256 IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.
IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-06-11
Published