Known vulnerabilities in IBM Qradar SIEM - page 13

Software CPE: cpe:2.3:a:ibm_corporation:ibm_qradar_siem:*:*:*:*:*:*:*:*
Total vulnerabilities: 1402
Public exploits: 87
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Qradar SIEM IBM Qradar SIEM is affected by 1402 known vulnerabilities: 8 critical, 140 high, 438 medium, 816 low Critical High Medium Low

Vulnerabilities (1402)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU109211 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-56463
CWE-79 Low
No
No
7.5.0 Update Pack 11 IF01 15.05.2025 SB2025051552
SB2025051554
#VU107996 - Error Handling
CVE-2025-31650
CWE-388 Medium
Available
No
7.5.0 Update Pack 12 IF02 28.04.2025 SB2025042851
SB2025050943
SB2025050982
and 38 more
#VU105723 - Stack-based buffer overflow
CVE-2024-8176
CWE-121 High
No
No
7.5.0 Update Pack 12 IF02 14.03.2025 SB2025031426
SB2025031429
SB2025031430
and 105 more
#VU105485 - Improper input validation
CVE-2025-24813
CWE-20 Critical
Available
Exploited
7.5.0 Update Pack 11 IF04 10.03.2025 SB2025031069
SB2025031976
SB2025032642
and 48 more
#VU105459 - Resource exhaustion
CVE-2025-22869
CWE-400 Low
No
No
7.5.0 Update Pack 12 IF02 10.03.2025 SB2025031011
SB2025031015
SB2025032557
and 108 more
#VU105387 - Improper input validation
CVE-2025-27516
CWE-20 Low
No
No
7.5.0 Update Pack 11 IF04 06.03.2025 SB2025030628
SB2025031001
SB2025031002
and 83 more
#VU104982 - Out-of-bounds read
CVE-2025-21785
CWE-125 Low
No
No
7.5.0 Update Pack 11 IF04 27.02.2025 SB2025022780
SB2025032503
SB2025032504
and 65 more
#VU104972 - Use After Free
CVE-2024-57979
CWE-416 Low
No
No
7.5.0 Update Pack 11 IF04 27.02.2025 SB2025022770
SB2025031049
SB2025031050
and 55 more
#VU104080 - Out-of-bounds write
CVE-2025-0624
CWE-787 Low
No
No
7.5.0 Update Pack 11 IF04 19.02.2025 SB202502197147
SB202502197181
SB202502197183
and 43 more
#VU103504 - Out-of-bounds write
CVE-2025-24528
CWE-787 Medium
No
No
7.5.0 Update Pack 12 IF02 03.02.2025 SB2025020331
SB2025020352
SB2025020412
and 49 more
#VU103500 - Permissions, Privileges, and Access Controls
CVE-2024-11218
CWE-264 Medium
No
No
7.5.0 Update Pack 11 IF04 03.02.2025 SB2025020321
SB2025020332
SB2025020333
and 34 more
#VU102938 - Improper Locking
CVE-2024-57807
CWE-667 Low
No
No
7.5.0 Update Pack 11 IF04 17.01.2025 SB2025011799
SB20250228103
SB20250228104
and 46 more
#VU102090 - Out-of-bounds write
CVE-2024-53197
CWE-787 High
No
Exploited
7.5.0 Update Pack 11 IF04 30.12.2024 SB20241230114
SB2025011046
SB2025011047
and 83 more
#VU101348 - Improper input validation
CVE-2024-53141
CWE-20 Low
No
No
7.5.0 Update Pack 12 IF02 09.12.2024 SB2024120932
SB2025011049
SB20250115100
and 80 more
#VU101033 - Use After Free
CVE-2023-52922
CWE-416 Low
No
No
7.5.0 Update Pack 11 IF04 28.11.2024 SB2024112876
SB2024121502
SB2024121504
and 40 more
#VU100611 - Missing release of memory after effective lifetime
CVE-2024-50302
CWE-401 Medium
No
Exploited
7.5.0 Update Pack 11 IF04 19.11.2024 SB2024111922
SB2024112401
SB2024121358
and 128 more
#VU99113 - Exposure of sensitive information to an unauthorized actor
CVE-2022-49011
CWE-200 Low
No
No
7.5.0 Update Pack 12 IF02 22.10.2024 SB20241022225
SB2024110892
SB2024110893
and 16 more
#VU94202 - Missing release of memory after effective lifetime
CVE-2024-40906
CWE-401 Low
No
No
7.5.0 Update Pack 12 IF02 13.07.2024 SB2024071302
SB2024071701
SB2024080967
and 19 more
#VU70441 - Insufficient Verification of Data Authenticity
CVE-2021-37533
CWE-345 Low
No
No
- 20.12.2022 SB2022122007
SB2022123001
SB2023011876
and 82 more
#VU6663 - Out-of-bounds read
CVE-2016-9840
CWE-125 Low
No
No
7.5.0 Update Pack 12 IF02 24.05.2017 SB2017052312
SB2017052405
SB2017052406
and 47 more


Showing elements 241 - 260 out of 1402