CVE-2025-25022HIGH 8.8EPSS p20.6%
CVE-2025-25022CVE-2025-25022
Description
IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.29% probability of exploitation · percentile 20.6% · 2026-06-19T12:03:05Z |
| Published | 2025-06-03 |
| Last modified | 2025-08-12 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Password in Configuration Filecwe-260 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.