← All CVEs

CVE-2025-25022

critical · 9.6

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.

9.6
CVSS
0.3%
EPSS (exploit prob.)
25th
EPSS percentile
2025-06-03
Published

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-260

Affected products

VendorProductAffected versions
ibmcloud_pak_for_security>= 1.10.0.0, <= 1.10.11.0
ibmqradar_suite>= 1.10.12.0, <= 1.11.2.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2025-25022