Vulnerability Details CVE-2026-13477
IBM QRadar 7.6.0.0 through 7.6.0.1, and 7.5.0 through 7.5.0 UP 15 Interim Fix 005 could allow an authenticated privileged user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 12.7%
CVSS Severity
CVSS v3 Score 4.7
Products affected by CVE-2026-13477
-
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.5.0
-
cpe:2.3:a:ibm:qradar_security_information_and_event_manager:7.6.0