CVE-2025-15051: IBM QRadar SIEM Cross-Site Scripting
IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-15051?
CVE-2025-15051 is classified as a cross-site scripting vulnerability, which can potentially allow attackers to execute malicious scripts in the context of a user's session.
How do I fix CVE-2025-15051?
To fix CVE-2025-15051, it is recommended to update IBM QRadar SIEM to the latest version that addresses this vulnerability.
Who is affected by CVE-2025-15051?
CVE-2025-15051 affects users running IBM QRadar SIEM version 7.5.0 through 7.5.0 Update Package 14.
What are the potential impacts of CVE-2025-15051?
The potential impacts of CVE-2025-15051 include unauthorized access, data theft, and the alteration of the functionality of the Web UI.
Is CVE-2025-15051 being actively exploited?
As of now, there is no public information indicating that CVE-2025-15051 is being actively exploited, but it is advisable to mitigate the risk.