Home

Description

IBM Security QRadar EDR 3.12 through 3.12.24 stores user credentials in plain text which can be read by a local privileged user.

PUBLISHED Reserved 2024-09-03 | Published 2026-06-11 | Updated 2026-06-11 | Assigner ibm




MEDIUM: 4.1CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:N/A:N

Problem types

CWE-256 Plaintext Storage of a Password

Product status

3.12.0 (semver)
affected

References

www.ibm.com/support/pages/node/7274828 vendor-advisory patch

cve.org (CVE-2024-45636)

nvd.nist.gov (CVE-2024-45636)

Download JSON