IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
ProductVersionFixIBM QRadar SIEM 7.5.0 7.5.0 UP15 https://www.ibm.com/support/fixcentral/swg/selectFixes ( Release Notes https://www.ibm.com/support/pages/node/7257011 )
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7266709 |
|
History
Thu, 19 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM QRadar SIEM 7.5.0 through 7.5.0 Update Package 14 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality. | |
| Title | IBM QRadar SIEM Cross-Site Scripting | |
| First Time appeared |
Ibm
Ibm qradar Security Information And Event Manager |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:-:*:*:*:*:*:* cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_14:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm qradar Security Information And Event Manager |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-03-19T01:55:41.122Z
Reserved: 2025-12-23T14:26:31.855Z
Link: CVE-2025-15051
No data.
Status : Received
Published: 2026-03-19T03:16:01.270
Modified: 2026-03-19T03:16:01.270
Link: CVE-2025-15051
No data.
OpenCVE Enrichment
No data.
Weaknesses