CVE-2025-36050: IBM QRadar SIEM information disclosure
IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 stores potentially sensitive information in log files that could be read by a local user.
Other sources
IBM QRadar stores potentially sensitive information in log files that could be read by a local user.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-36050?
The severity of CVE-2025-36050 is categorized as medium risk due to the potential exposure of sensitive information.
How do I fix CVE-2025-36050?
To fix CVE-2025-36050, update IBM QRadar SIEM to version 7.5.0 Update Package 13 or later.
Who is affected by CVE-2025-36050?
Organizations using IBM QRadar SIEM versions 7.5 through 7.5.0 Update Package 12 are affected by CVE-2025-36050.
What type of information is exposed in CVE-2025-36050?
CVE-2025-36050 exposes potentially sensitive information stored in log files that can be accessed by local users.
Is CVE-2025-36050 a remote attack vulnerability?
CVE-2025-36050 is not a remote attack vulnerability; it requires local access to exploit.