CVE-2024-56464: IBM QRadar SIEM is affected by an information disclosure vulnerability
Published Dec 4, 2025
·Updated
IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of directory information. IBM has addressed this vulnerability in the latest update.
Other sources
IBM QRadar SIEM could allow a privileged user to enumerate directory information.
— IBM
Affected Software
19 affected components
IBM QRadar SIEM>=7.5<7.5.0 UP14 IF01
IBM QRadar SIEM<=7.5 - 7.5.0 UP14 IF01
IBM QRadar Security Information and Event Manager=7.5.0
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_1
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_10
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_11
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_12
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_13
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_13_interim_fix_01
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_13_interim_fix_02
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_14
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_14_interim_fix_01
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_2
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_3
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_4
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_5
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_6
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_7
IBM QRadar Security Information and Event Manager=7.5.0-update_pack_8
Remediation
Information
IBM encourages customers to update their systems promptly.
ProductVersionFixIBM QRadar SIEM 7.5.0 QRadar 7.5.0 UP14 IF02 https://www.ibm.com/support/fixcentral/swg/quickorder
Patch Available
Event History
Dec 4, 2025
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Dec 9, 2025
CVE Published
via MITRE·01:26 PM
Data Sourced
via MITRE·01:26 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:17 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-56464?
CVE-2024-56464 is considered a medium severity information disclosure vulnerability.
2
How do I fix CVE-2024-56464?
To fix CVE-2024-56464, upgrade to the latest version of IBM QRadar SIEM as specified by IBM.
3
What type of vulnerability is CVE-2024-56464?
CVE-2024-56464 is classified as an information disclosure vulnerability.
4
Who is affected by CVE-2024-56464?
CVE-2024-56464 affects users of IBM QRadar SIEM versions 7.5 to 7.5.0 UP14 IF01.
5
What could a privileged user do in the context of CVE-2024-56464?
A privileged user could potentially enumerate sensitive directory information due to CVE-2024-56464.