CVE-2021-29750
IBM QRadar SIEM vulnerability analysis and mitigation

Overview

IBM QRadar SIEM versions 7.3 and 7.4 was discovered to use weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. The vulnerability was assigned CVE-2021-29750 and was disclosed on September 15, 2021. The affected systems include QRadar SIEM versions 7.3 (all HTTPReceiver versions before 7.3.0-QRADAR-PROTOCOL-HTTPReceiver-7.3-20210805183115) and 7.4 (all HTTPReceiver versions before 7.4.0-QRADAR-PROTOCOL-HTTPReceiver-7.4-20210823144546) (IBM Support).

Technical details

The vulnerability was assigned a CVSS v3.1 base score of 5.9 MEDIUM with vector CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N, indicating that it is network accessible but requires high attack complexity, needs no privileges or user interaction, and can result in high confidentiality impact without affecting integrity or availability. The weakness is classified as CWE-327: Use of a Broken or Risky Cryptographic Algorithm (NVD).

Impact

The vulnerability could allow attackers to decrypt highly sensitive information due to the implementation of cryptographic algorithms that are weaker than expected. This poses a significant confidentiality risk as sensitive data could be exposed if successfully exploited (IBM Support).

Mitigation and workarounds

IBM released patches to address this vulnerability. For version 7.3, users should update to 7.3.0-QRADAR-PROTOCOL-HTTPReceiver-7.3-20210805183115 or later. For version 7.4, users should update to 7.4.0-QRADAR-PROTOCOL-HTTPReceiver-7.4-20210823144546 or later. These fixes were released as part of the August 31, 2021 auto update bundle. No workarounds are available for this vulnerability (IBM Support).

Additional resources


SourceThis report was generated using AI

Related IBM QRadar SIEM vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-36007HIGH7.8
  • IBM QRadar SIEMIBM QRadar SIEM
  • cpe:2.3:a:ibm:qradar_security_information_and_event_manager
NoNoOct 27, 2025
CVE-2025-36170MEDIUM5.4
  • IBM QRadar SIEMIBM QRadar SIEM
  • cpe:2.3:a:ibm:qradar_security_information_and_event_manager
NoNoOct 27, 2025
CVE-2025-36138MEDIUM5.4
  • IBM QRadar SIEMIBM QRadar SIEM
  • cpe:2.3:a:ibm:qradar_security_information_and_event_manager
NoNoOct 27, 2025
CVE-2025-36042MEDIUM5.4
  • IBM QRadar SIEMIBM QRadar SIEM
  • cpe:2.3:a:ibm:qradar_security_information_and_event_manager
NoNoAug 22, 2025
CVE-2025-0164LOW2.3
  • IBM QRadar SIEMIBM QRadar SIEM
  • cpe:2.3:a:ibm:qradar_security_information_and_event_manager
NoNoSep 14, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management