CVE-2025-33119: IBM QRadar SIEM Information Disclosure
IBM QRadar SIEM 7.5 through 7.5.0 UP14 stores user credentials in configuration files in source control which can be read by an authenticated user.
Other sources
IBM QRadar SIEM stores user credentials in configuration files in source control which can be read by an autheciated user.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-33119?
CVE-2025-33119 has been classified as a medium severity vulnerability due to the exposure of user credentials in configuration files.
How do I fix CVE-2025-33119?
To fix CVE-2025-33119, it is recommended to upgrade IBM QRadar SIEM to a version beyond 7.5.0 UP14 where the issue has been addressed.
Who is affected by CVE-2025-33119?
CVE-2025-33119 affects users of IBM QRadar SIEM versions 7.5 through 7.5.0 UP14 that have user credentials stored in configuration files.
What is the risk of CVE-2025-33119?
The risk associated with CVE-2025-33119 is that authenticated users may access sensitive user credentials, which could lead to unauthorized access to the system.
Is there a workaround for CVE-2025-33119?
A temporary workaround for CVE-2025-33119 is to restrict access to the configuration files to prevent unauthorized reading until an upgrade can be performed.