{"cve":{"cve_id":"CVE-2024-22355","is_kev":false,"kev_date_added":null,"kev_vendor_project":null,"kev_product":null,"kev_vulnerability_name":null,"kev_short_description":null,"kev_required_action":null,"kev_due_date":null,"kev_known_ransomware":null,"kev_notes":null,"kev_cwes":null,"epss_score":0.0041,"epss_percentile":0.32594,"epss_as_of":"2026-06-23","description":"IBM QRadar Suite Products 1.10.12.0 through 1.10.18.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.  IBM X-Force ID:  280781.","published_at":"2024-03-03T12:20:59.026000Z","last_modified_at":null,"cvss_v3_score":5.9,"cvss_v3_vector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","cvss_v3_severity":"MEDIUM","cvss_v4_score":null,"cvss_v4_vector":null,"cvss_v4_severity":null,"ssvc_decision":null,"ssvc_exploitation":"none","ssvc_automatable":false,"ssvc_technical_impact":"partial","cwes":["CWE-521"],"nvd_references":["https://www.ibm.com/support/pages/node/7129328","https://exchange.xforce.ibmcloud.com/vulnerabilities/280781"],"vuln_status":null,"trending_score":null,"is_trending":false,"has_trended":false,"trended_number_one":false,"trending_peak_score":null,"trending_peak_rank":null,"started_trending_at":null,"trended_number_one_at":null,"summary_generated":null,"summary_generated_at":null,"summary_model":null,"created_at":"2026-06-24T00:09:39.878444Z","updated_at":"2026-06-29T01:52:30.567529Z"},"effective_severity":"MEDIUM","badges":[],"impact_analysis":[],"cvss_v3_decoded":{"version":"3.1","metrics":[{"metric":"AV","name":"Attack Vector","value":"N","value_label":"Network"},{"metric":"AC","name":"Attack Complexity","value":"H","value_label":"High"},{"metric":"PR","name":"Privileges Required","value":"N","value_label":"None"},{"metric":"UI","name":"User Interaction","value":"N","value_label":"None"},{"metric":"S","name":"Scope","value":"U","value_label":"Unchanged"},{"metric":"C","name":"Confidentiality","value":"H","value_label":"High"},{"metric":"I","name":"Integrity","value":"N","value_label":"None"},{"metric":"A","name":"Availability","value":"N","value_label":"None"}]},"cvss_v4_decoded":{"version":null,"metrics":[]},"affected":[{"vendor_slug":"ibm","vendor_name":"ibm","product_slug":"cloud-pak-for-security","product_name":"cloud_pak_for_security","version_start":"1.10.0.0","version_start_inclusive":true,"version_end":"1.10.11.0","version_end_inclusive":true,"cpe23_uri":"cve5:ibm:cloud-pak-for-security:1.10.0.0:1.10.11.0"},{"vendor_slug":"ibm","vendor_name":"ibm","product_slug":"qradar-suite-products","product_name":"QRadar Suite Products","version_start":"1.10.12.0","version_start_inclusive":true,"version_end":"1.10.18.0","version_end_inclusive":true,"cpe23_uri":"cve5:ibm:qradar-suite-products:1.10.12.0:1.10.18.0"}],"exploit_refs":[],"news":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7129328","source_type":"MISC","tags":[]},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/280781","source_type":"MISC","tags":[]}],"timeline":[{"type":"published","at":"2024-03-03T12:20:59.026000Z","label":"CVE published","source":null},{"type":"cvss_changed","at":"2026-06-28T17:34:07.300321Z","label":"CVSS score revised","source":"cvelistv5"},{"type":"cvss_changed","at":"2026-06-28T17:34:07.300321Z","label":"CVSS score revised","source":"cvelistv5"},{"type":"cvss_changed","at":"2026-06-28T17:34:07.300321Z","label":"CVSS score revised","source":"cvelistv5"},{"type":"ssvc_changed","at":"2026-06-29T01:52:30.567529Z","label":"SSVC decision revised","source":"vulnrichment"},{"type":"ssvc_changed","at":"2026-06-29T01:52:30.567529Z","label":"SSVC decision revised","source":"vulnrichment"},{"type":"ssvc_changed","at":"2026-06-29T01:52:30.567529Z","label":"SSVC decision revised","source":"vulnrichment"}]}