๐Ÿ” CVE Alert

CVE-2024-45636

MEDIUM 4.1

IBM Security QRadar EDR Software has a vulnerability where user credentials may be stored in plain text, potentially exposing sensitive information.

CVSS Score
4.1
EPSS Score
0.0%
EPSS Percentile
0th

IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.

CWE CWE-256
Vendor ibm
Product security qradar edr
Published Jun 11, 2026
Last Updated Jun 11, 2026
Stay Ahead of the Next One

Get instant alerts for ibm security qradar edr

Be the first to know when new medium vulnerabilities affecting ibm security qradar edr are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N
Attack Vector
Local
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
None
Availability
None

Affected Versions

IBM / Security QRadar EDR
3.12.0 โ‰ค 3.12.24

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
ibm.com: https://www.ibm.com/support/pages/node/7274828