CVE-2025-25022HIGH 8.8EPSS p22.6%
CVE-2025-25022CVE-2025-25022
Description
IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.
Scoring
| CVSS 3.1 | 8.8 (HIGH) |
| Vector | CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
| EPSS | 0.30% probability of exploitation · percentile 22.6% · 2026-08-03T12:00:16Z |
| Published | 2025-06-03 |
| Last modified | 2025-08-12 |
Underlying weaknesses· 1
References
1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Password in Configuration Filecwe-260 | 0% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.