Privilege Escalation Vulnerability in IBM QRadar SIEM
CVE-2025-33120

7.8HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
22 August 2025

What is CVE-2025-33120?

IBM QRadar SIEM versions 7.5 to 7.5.0 UP13 contain a vulnerability that enables authenticated users to escalate their privileges. This issue arises from a misconfigured cronjob that executes with unnecessary privileges, potentially allowing users to manipulate access controls and gain unauthorized permissions. It is essential for organizations using affected versions to apply the necessary patches to mitigate this risk and ensure their systems remain secure.

Affected Version(s)

QRadar SIEM 7.5 <= 7.5.0 Update Pack 13

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

John Zuccato, Rodney Ryan, Chris Shepherd, Vince Dragnea, Ben Goodspeed, Dawid Bak
.