{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-06-02T01:49:27.056","vulnerabilities":[{"cve":{"id":"CVE-2024-56463","sourceIdentifier":"psirt@us.ibm.com","published":"2025-02-14T17:15:16.420","lastModified":"2025-03-03T17:09:36.020","vulnStatus":"Analyzed","cveTags":[],"descriptions":[{"lang":"en","value":"IBM QRadar SIEM 7.5 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session."},{"lang":"es","value":"IBM QRadar SIEM 7.5 es vulnerable a ataques de Cross Site Scripting. Esta vulnerabilidad permite que un usuario privilegiado incorpore código JavaScript arbitrario en la interfaz de usuario web, alterando así la funcionalidad prevista y pudiendo provocar la divulgación de credenciales dentro de una sesión de confianza."}],"metrics":{"cvssMetricV31":[{"source":"psirt@us.ibm.com","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N","baseScore":4.8,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":1.7,"impactScore":2.7}]},"weaknesses":[{"source":"psirt@us.ibm.com","type":"Secondary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:-:*:*:*:*:*:*","matchCriteriaId":"DACA17CC-8B71-4E71-B075-BFFB65AD989C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_1:*:*:*:*:*:*","matchCriteriaId":"BA60FDE5-8C40-4C7A-97CF-BA2A64BF307D"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_10:*:*:*:*:*:*","matchCriteriaId":"3D6ADD3A-99BC-495F-9835-92D16DF18FC1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_11:*:*:*:*:*:*","matchCriteriaId":"5C899CFD-26F5-43FA-A39E-7196E2929AD9"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_2:*:*:*:*:*:*","matchCriteriaId":"AB518E06-00BA-48F3-8AEC-6E1E97CAA2CC"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_3:*:*:*:*:*:*","matchCriteriaId":"289027A2-178C-45DE-A86F-1207F23D13B1"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_4:*:*:*:*:*:*","matchCriteriaId":"5047AECF-879B-427A-ACF7-ECB10965E1B0"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_5:*:*:*:*:*:*","matchCriteriaId":"CD448AB8-E3CC-41A1-9D32-B1B35C68FA5C"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_6:*:*:*:*:*:*","matchCriteriaId":"9F4014E8-42E2-4B76-B2DA-8B50929A4AB5"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_7:*:*:*:*:*:*","matchCriteriaId":"BD0A459A-C74A-4E18-83B3-4C29D47D2C2B"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_8:*:*:*:*:*:*","matchCriteriaId":"721EFDD7-EE35-430C-AF17-C54BDB10434E"},{"vulnerable":true,"criteria":"cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0:update_pack_9:*:*:*:*:*:*","matchCriteriaId":"4C3D4D7E-0B57-47E3-BD16-5BBCE05063F5"}]}]}],"references":[{"url":"https://www.ibm.com/support/pages/node/7183251","source":"psirt@us.ibm.com","tags":["Patch","Vendor Advisory"]}]}}]}