CVE-2024-45638

CVSS 3.1 Score 4.1 of 10 (medium)

Details

Published Mar 14, 2025
CWE ID 256

Summary

CVE-2024-45638 is a recently disclosed vulnerability affecting IBM Security QRadar 3.12 EDR. This issue arises due to the insecure storage of user credentials in plain text format. A local privileged user can easily access and read these sensitive credentials, posing a significant security risk. This vulnerability can potentially lead to unauthorized access to the QRadar system and the data it protects, potentially resulting in data breaches or other malicious activities. IBM is strongly advising users to upgrade their QRadar software to a patched version as soon as possible to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share