Known vulnerabilities in IBM Qradar SIEM - page 9

Software CPE: cpe:2.3:a:ibm_corporation:ibm_qradar_siem:*:*:*:*:*:*:*:*
Total vulnerabilities: 1402
Public exploits: 87
Known exploited (KEV): 24
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Qradar SIEM IBM Qradar SIEM is affected by 1402 known vulnerabilities: 8 critical, 140 high, 438 medium, 816 low Critical High Medium Low

Vulnerabilities (1402)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU112646 - Product UI does not Warn User of Unsafe Actions
CVE-2025-46835
CWE-356 Medium
No
No
7.5.0 Update Pack 13 IF01 09.07.2025 SB2025070994
SB20250709121
SB2025071019
and 22 more
#VU112643 - Improper input validation
CVE-2025-27614
CWE-20 High
No
No
7.5.0 Update Pack 13 IF01 09.07.2025 SB2025070994
SB20250709119
SB2025071019
and 18 more
#VU112642 - Protection Mechanism Failure
CVE-2025-27613
CWE-693 High
No
No
7.5.0 Update Pack 13 IF01 09.07.2025 SB2025070994
SB20250709122
SB2025071019
and 22 more
#VU112638 - Improper input validation
CVE-2025-48385
CWE-20 High
No
No
7.5.0 Update Pack 13 IF01 09.07.2025 SB2025070989
SB2025070990
SB2025070991
and 38 more
#VU112637 - Improper Neutralization of CRLF Sequences ('CRLF Injection')
CVE-2025-48384
CWE-93 Medium
Available
Exploited
7.5.0 Update Pack 13 IF01 09.07.2025 SB2025070989
SB2025070990
SB2025070991
and 52 more
#VU111912 - Heap-based Buffer Overflow
CVE-2025-48060
CWE-122 Medium
No
No
7.5.0 Update Pack 13 IF01 25.06.2025 SB2025032035
SB2025070824
SB2025070826
and 38 more
#VU109840 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-47273
CWE-22 High
No
No
7.5.0 Update Pack 13 IF01 27.05.2025 SB2025052721
SB2025052734
SB2025052736
and 112 more
#VU109423 - Exposure of sensitive information to an unauthorized actor
CVE-2024-43420
CWE-200 Low
No
No
7.5.0 Update Pack 13 IF01 19.05.2025 SB2025051947
SB2025051953
SB2025051954
and 11 more
#VU108247 - Use After Free
CVE-2025-23150
CWE-416 Low
No
No
7.5.0 Update Pack 13 IF01 02.05.2025 SB20250502152
SB2025052345
SB2025061222
and 65 more
#VU108241 - Use After Free
CVE-2025-37738
CWE-416 Low
No
No
7.5.0 Update Pack 13 IF01 02.05.2025 SB20250502146
SB2025060678
SB2025060679
and 59 more
#VU108204 - Missing release of memory after effective lifetime
CVE-2022-49788
CWE-401 Low
No
No
7.5.0 Update Pack 13 IF01 02.05.2025 SB20250502105
SB2025053054
SB2025061221
and 32 more
#VU106956 - Use After Free
CVE-2025-22004
CWE-416 Low
No
No
7.5.0 Update Pack 13 IF01 03.04.2025 SB2025040374
SB20250422196
SB2025050998
and 89 more
#VU106647 - Out-of-bounds read
CVE-2025-21991
CWE-125 Low
No
No
7.5.0 Update Pack 13 IF01 02.04.2025 SB2025040248
SB20250422196
SB2025052639
and 65 more
#VU105071 - Resource Management Errors
CVE-2024-58002
CWE-399 Low
No
No
7.5.0 Update Pack 13 IF01 27.02.2025 SB20250227166
SB2025040917
SB2025040929
and 72 more
#VU104971 - Use After Free
CVE-2024-57980
CWE-416 Low
No
No
7.5.0 Update Pack 13 IF01 27.02.2025 SB2025022769
SB20250403105
SB20250403106
and 79 more
#VU104802 - Memory corruption
CVE-2022-49058
CWE-119 Low
No
No
7.5.0 Update Pack 13 IF01 26.02.2025 SB20250226636
SB2025032664
SB2025040916
and 18 more
#VU102870 - Improper Encoding or Escaping of Output
CVE-2024-50349
CWE-116 Low
No
No
7.5.0 Update Pack 13 IF01 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU102869 - Improper Encoding or Escaping of Output
CVE-2024-52006
CWE-116 Low
No
No
7.5.0 Update Pack 13 IF01 16.01.2025 SB2025011640
SB2025011641
SB2025011643
and 21 more
#VU101797 - Insecure Temporary File
CVE-2024-54661
CWE-377 Low
No
No
7.5.0 Update Pack 13 IF01 16.12.2024 SB2024121640
SB2024121649
SB2024121650
and 30 more
#VU27258 - Insufficiently Protected Credentials
CVE-2020-5260
CWE-522 Medium
Available
No
7.5.0 Update Pack 13 IF01 23.04.2020 SB2020042343
SB2020042344
SB2020042345
and 27 more


Showing elements 161 - 180 out of 1402