CVE-2018-1648: IBM Qradar Incident Forensics
High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.
IBM QRadar SIEM 7.2 and 7.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 144653.
Affected products
- IBM Qradar Incident Forensics: from 7.2.0, before 7.2.8 (fixed in 7.2.8); from 7.3.0, before 7.3.1 (fixed in 7.3.1); version 7.2.8 only; version 7.3.1 only
Published 2018-12-05. Last modified 2026-06-17.