Session Management Flaw in IBM Security QRadar EDR
CVE-2025-36376
6.3MEDIUM
What is CVE-2025-36376?
IBM Security QRadar EDR versions 3.12 to 3.12.23 are susceptible to a session management vulnerability that fails to invalidate user sessions after expiration. This flaw can potentially enable an authenticated user to impersonate another active user on the system, posing significant risks to user privacy and system integrity. Users are advised to check for patches and updates to mitigate potential exploitation.
Affected Version(s)
Security QRadar EDR 3.12 <= 3.12.23