CVE-2025-0164

LOW

IBM QRadar SIEM <7.5.13 - Privilege Escalation

Title source: llm
STIX 2.1

Description

IBM QRadar SIEM 7.5 through 7.5 Update Pack 13 Independent Fix 01 could allow a local privileged user to perform unauthorized actions on configuration files due to improper permission assignment.

Scores

CVSS v3 2.3
EPSS 0.0001
EPSS Percentile 1.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-732
Status published
Products (1)
ibm/qradar_security_information_and_event_manager 7.5.0 (15 CPE variants)
Published Sep 14, 2025
Tracked Since Feb 18, 2026