VYPR
Unrated severityNVD Advisory· Published Jun 3, 2025· Updated Feb 26, 2026

IBM QRadar Suite Software and IBM Cloud Pak for Security information disclosure

CVE-2025-25022

Description

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.

Affected products

4
  • IBM/Cloud Pak for Securitycpe-rescue2 versions
    cpe:2.3:a:ibm:cloud_pak_for_security:1.10.0.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ibm:cloud_pak_for_security:1.10.0.0:*:*:*:*:*:*:*range: 1.10.0.0
    • (no CPE)range: 1.10.0.0 – 1.10.11.0
  • IBM/QRadar Suite Softwarecpe-rescue2 versions
    cpe:2.3:a:ibm:qradar_suite:1.10.12.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ibm:qradar_suite:1.10.12.0:*:*:*:*:*:*:*range: 1.10.12.0
    • (no CPE)range: 1.10.12.0 – 1.11.2.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.