IBM QRadar SIEM 7.5.0 UP14 InfoDiscl via Dir Info
CVE-2024-56464 Published on December 9, 2025
IBM QRadar SIEM is affected by an information disclosure vulnerability
IBM QRadar SIEM 7.5 - 7.5.0 UP14 IF01 is affected by an information disclosure vulnerability involving exposure of directory information. IBM has addressed this vulnerability in the latest update.
Vulnerability Analysis
CVE-2024-56464 is exploitable with network access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a small impact on confidentiality, a small impact on integrity and availability.
Weakness Type
Exposure of Information Through Directory Listing
A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers. A directory listing provides an attacker with the complete index of all the resources located inside of the directory. The specific risks and consequences vary depending on which files are listed and accessible.
Products Associated with CVE-2024-56464
Want to know whenever a new CVE is published for IBM Qradar Security Information Event Manager? stack.watch will email you.
Affected Versions
IBM QRadar SIEM:- Version 7.5, <= 7.5.0 UP14 IF01 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.