CVE-2025-33117: IBM Qradar Security Information And Event Manager
Critical severity, CVSS 9.1. EPSS: 0.6% chance of exploitation in the next 30 days.
IBM QRadar SIEM 7.5 through 7.5.0 Update Package 12 could allow a privileged user to modify configuration files that would allow the upload of a malicious autoupdate file to execute arbitrary commands.
Affected products
- IBM Qradar Security Information And Event Manager: version 7.5.0 only
Published 2025-06-19. Last modified 2026-06-17.