Session Management Flaw in IBM Security QRadar EDR Affects User Authentication
CVE-2025-36377
6.3MEDIUM
What is CVE-2025-36377?
IBM Security QRadar EDR versions 3.12 through 3.12.23 contain a session management flaw where sessions are not properly invalidated after expiration. This may enable an authenticated user to impersonate another user, compromising the security integrity of the affected system. Promptly apply updates and patches to protect against potential unauthorized access.
Affected Version(s)
Security QRadar EDR 3.12 <= 3.12.23