CVE-2025-36007
27.10.2025, 19:16
IBM QRadar SIEM 7.5 through 7.5.0 Update Pack 13 Independent Fix 02 is vulnerable to privilege escalation due to improper privilege assignment to an update script.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ibm | qradar_security_information_and_event_manager | 7.5.0 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_1 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_10 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_11 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_12 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_13 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_13_independent_fix_01 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_13_independent_fix_02 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_2 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_3 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_4 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_5 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_6 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_7 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_8 |
| ibm | qradar_security_information_and_event_manager | 7.5.0:update_pack_9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration