CVE-2025-36051
published 2026-03-19CVE-2025-36051: IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 stores potentially sensitive information in configuration files that could be read by a local user.
PriorityP425medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
EPSS
0.10%
1.1th percentile
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 stores potentially sensitive information in configuration files that could be read by a local user.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | qradar_security_information_and_event_manager | — | — |
| ibm | qradar_siem | 7.5.0 – 7.5.0 Update Pack 14 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Wiz
CVE-2025-13995 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 2.7
CVE-2025-13995 [LOW] CVE-2025-13995 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-13995 :
IBM QRadar SIEM vulnerability analysis and mitigation
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 could allow an attacker with access to one tenant to access hostname data from another tenant's account.
Source : NVD
## 5
Score
Published March 19, 2026
Severity MEDIUM
CNA Score 5.0
Affected Technologies
IBM QRadar SIEM
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 13.4
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:ibm:qradar_security_information_and_event_manager
Sources
Linux Severity MEDIUM No Fix Added at: Mar 24, 2026
Linux Severity MEDIUM No Fix Added at: Mar 24, 2026
## Get a CVE risk assessment
Get a priori
Wiz
CVE-2026-1276 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 2.7
CVE-2026-1276 [LOW] CVE-2026-1276 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2026-1276 :
IBM QRadar SIEM vulnerability analysis and mitigation
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Source : NVD
## 5.4
Score
Published March 19, 2026
Severity MEDIUM
CNA Score 5.4
Affected Technologies
IBM QRadar SIEM
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 7.7
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:ibm:qradar_security_information_and_event_manager
Sources
Linux
Wiz
CVE-2024-56464 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 2.7
CVE-2024-56464 [LOW] CVE-2024-56464 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2024-56464 :
IBM QRadar SIEM vulnerability analysis and mitigation
IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of directory information. IBM has addressed this vulnerability in the latest update.
Source : NVD
## 2.7
Score
Published December 9, 2025
Severity LOW
CNA Score 2.7
Affected Technologies
IBM QRadar SIEM
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 10.5
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:ibm:qradar_security_information_and_event_manager
Sources
Linux Severity LOW No Fix Added at: Dec 12, 2025
## Get a CVE risk assessment
Get a prioritized view of CVE
Wiz
CVE-2025-15051 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 2.7
CVE-2025-15051 [LOW] CVE-2025-15051 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-15051 :
IBM QRadar SIEM vulnerability analysis and mitigation
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality.
Source : NVD
## 5.4
Score
Published March 19, 2026
Severity MEDIUM
CNA Score 5.4
Affected Technologies
IBM QRadar SIEM
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 7.7
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:ibm:qradar_security_information_and_event_manager
Sources
Linux Severity MEDIUM No Fix Added at: Mar 24, 2026
Linux Severity MEDIUM No Fix Added at:
Wiz
CVE-2025-36051 Impact, Exploitability, and Mitigation Steps | Wiz
blogs_wiz·CVSS 2.7
CVE-2025-36051 [LOW] CVE-2025-36051 Impact, Exploitability, and Mitigation Steps | Wiz
## CVE-2025-36051 :
IBM QRadar SIEM vulnerability analysis and mitigation
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 stores potentially sensitive information in configuration files that could be read by a local user.
Source : NVD
## 5.5
Score
Published March 19, 2026
Severity MEDIUM
CNA Score 6.2
Affected Technologies
IBM QRadar SIEM
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 1.9
Exploitation Probability (EPSS) N/A
Affected packages and libraries
cpe:2.3:a:ibm:qradar_security_information_and_event_manager
Sources
Linux Severity MEDIUM No Fix Added at: Mar 25, 2026
Linux Severity MEDIUM No Fix Added at: Mar 26, 2026
## Get a CVE risk assessment
Get a prioritize
2026-03-19
Published