CVE-2025-0164: IBM QRadar SIEM information disclosure
IBM QRadar SIEM 7.5 through 7.5 Update Pack 13 Independent Fix 01 could allow a local privileged user to perform unauthorized actions on configuration files due to improper permission assignment.
Other sources
IBM QRadar SIEM could allow a local privileged user to perform unauthorized actions on configuration files due to improper permission assignment.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0164?
CVE-2025-0164 is classified as a high severity vulnerability due to the potential for local privileged users to perform unauthorized actions.
How do I fix CVE-2025-0164?
To fix CVE-2025-0164, ensure that proper permission settings are applied to configuration files in IBM QRadar SIEM.
Who is affected by CVE-2025-0164?
CVE-2025-0164 affects IBM QRadar SIEM versions 7.5 through 7.5 Update Pack 13 Independent Fix 01.
What kind of unauthorized actions can be performed due to CVE-2025-0164?
Due to CVE-2025-0164, a local privileged user could potentially modify or access sensitive configuration files unauthorized.
Is there a patch available for CVE-2025-0164?
As of the latest updates, IBM has not publicly specified a dedicated patch, so monitoring their support channels is essential for resolutions.