CVE-2024-28782

Severity CVSS v4.0:
Pending analysis
Type:
CWE-256 Plaintext Storage of a Password
Publication date:
03/04/2024
Last modified:
14/08/2025

Description

IBM QRadar Suite Software 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores user credentials in plain clear text which can be read by an authenticated user. IBM X-Force ID: 285698.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:cloud_pak_for_security:*:*:*:*:*:*:*:* 1.10.0.0 (including) 1.10.11.0 (including)
cpe:2.3:a:ibm:qradar_suite:*:*:*:*:*:*:*:* 1.10.12.0 (including) 1.10.18.0 (including)