CVE-2025-36376
- EPSS 0.05%
- Veröffentlicht 17.02.2026 20:37:28
- Zuletzt bearbeitet 20.02.2026 21:05:12
IBM Security QRadar EDR 3.12 through 3.12.23 does not invalidate session after a session expiration which could allow an authenticated user to impersonate another user on the system.
CVE-2025-36377
- EPSS 0.05%
- Veröffentlicht 17.02.2026 20:32:01
- Zuletzt bearbeitet 20.02.2026 18:19:12
IBM Security QRadar EDR 3.12 through 3.12.23 does not invalidate session after a session expiration which could allow an authenticated user to impersonate another user on the system.
CVE-2025-36379
- EPSS 0.02%
- Veröffentlicht 17.02.2026 20:30:29
- Zuletzt bearbeitet 20.02.2026 18:17:24
IBM Security QRadar EDR 3.12 through 3.12.23 IBM Security ReaQta uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
CVE-2024-45641
- EPSS 0.1%
- Veröffentlicht 20.05.2025 15:27:45
- Zuletzt bearbeitet 15.07.2025 17:31:32
IBM Security ReaQta EDR 3.12 could allow an attacker to perform unauthorized actions due to improper SSL certificate validation.
CVE-2023-33861
- EPSS 0.18%
- Veröffentlicht 20.05.2025 14:51:23
- Zuletzt bearbeitet 15.07.2025 17:33:47
IBM Security ReaQta EDR 3.12 could allow an attacker to spoof a trusted entity by interfering with the communication path between the host and client.
CVE-2024-45644
- EPSS 0.1%
- Veröffentlicht 19.03.2025 12:15:14
- Zuletzt bearbeitet 15.07.2025 16:47:28
IBM Security ReaQta 3.12 allows a privileged user to upload or transfer files of dangerous types that can be automatically processed within the product's environment.
CVE-2024-45638
- EPSS 0.02%
- Veröffentlicht 14.03.2025 14:49:52
- Zuletzt bearbeitet 16.07.2025 15:24:29
IBM Security QRadar 3.12 EDR stores user credentials in plain text which can be read by a local privileged user.
CVE-2024-45643
- EPSS 0.05%
- Veröffentlicht 14.03.2025 14:49:01
- Zuletzt bearbeitet 16.07.2025 15:21:37
IBM Security QRadar 3.12 EDR uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt sensitive credential information.
CVE-2024-45654
- EPSS 0.11%
- Veröffentlicht 19.01.2025 03:15:07
- Zuletzt bearbeitet 16.07.2025 00:45:27
IBM Security ReaQta 3.12 could allow an authenticated user to perform unauthorized actions due to reliance on untrusted inputs.
CVE-2024-45100
- EPSS 0.11%
- Veröffentlicht 07.01.2025 13:15:07
- Zuletzt bearbeitet 16.07.2025 00:20:24
IBM Security ReaQta 3.12 could allow a privileged user to cause a denial of service by sending multiple administration requests due to improper allocation of resources.