IBM QRadar SIEM is a solution from International Business Machines (IBM) that utilizes security intelligence to protect assets and information from advanced threats. The solution provides oversight of the entire scope of the IT architecture, generates detailed reports on data access and user activity, and more. A cross-site scripting vulnerability exists in IBM QRadar SIEM versions prior to 7.5.0 that stems from the application’s lack of effective filtering and escaping of user-supplied data, which can be exploited by an attacker to embed arbitrary JavaScript code in the Web UI to change the intended functionality, resulting in the disclosure of credentials during a trusted session.