Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-25019


IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not invalidate session after a logout which could allow a user to impersonate another user on the system.


Published

2025-06-03T16:15:23.960

Last Modified

2025-08-12T20:03:09.690

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 4.8 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-613

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm cloud_pak_for_security ≤ 1.10.11.0 Yes
Application ibm qradar_suite ≤ 1.11.2.0 Yes

References