PatchSiren

PatchSiren cyber security CVE debrief

CVE-2024-45636 IBM CVE debrief

CVE-2024-45636 is a vulnerability in IBM Security QRadar EDR 3.12 through 3.12.24. The vulnerability allows a local privileged user to read user credentials stored in plain text.

Vendor
IBM
Product
Security QRadar EDR
CVSS
MEDIUM 4.1
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-11
Original CVE updated
2026-06-11
Advisory published
2026-06-11
Advisory updated
2026-06-11

Who should care

Users of IBM Security QRadar EDR 3.12 through 3.12.24 should be aware of this vulnerability and take steps to mitigate it.

Technical summary

The vulnerability has a CVSS score of 4.1 and a severity of MEDIUM. It is caused by the storage of user credentials in plain text, which can be read by a local privileged user.

Defensive priority

MEDIUM

Recommended defensive actions

  • Apply the necessary patches or updates to IBM Security QRadar EDR 3.12 through 3.12.24.
  • Restrict access to sensitive areas of the system to only those who need it.
  • Monitor system logs for any suspicious activity.

Evidence notes

The CVE record was published on [cve-org](https://www.cve.org/CVERecord?id=CVE-2024-45636). The NVD detail can be found at [nvd](https://nvd.nist.gov/vuln/detail/CVE-2024-45636).

Official resources

CVE-2024-45636 was published on 2026-06-11T16:16:21.357Z and modified on 2026-06-11T20:56:29.653Z.