CVE-2026-19482
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of command arguments.
CVE-2026-18740
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote authenticated attacker to perform unauthorized actions due to argument injection.
CVE-2026-17189
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 is vulnerable to cross-site scripting. This vulnerability allows an unauthenticated user to embed arbitrary JavaScript code in the Web UI thus alterin...
CVE-2026-16916
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote authenticated attacker to execute arbitrary code due to a protection mechanism failure.
CVE-2026-16830
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote authenticated attacker to modify data and cause a denial of service due to an SQL injection vulnerability.
CVE-2026-16823
- EPSS -
- Veröffentlicht 08.10.2026 21:17:56
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a remote attacker to bypass security restrictions due to improper authentication.
CVE-2026-12109
- EPSS -
- Veröffentlicht 08.10.2026 21:17:55
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow an attacker with administrative privileges and access to the local management interface to execute arbitrary code due to an unbounded writ...
CVE-2026-12091
- EPSS -
- Veröffentlicht 08.10.2026 21:17:54
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a denial of service due to a heap-based out-of-bounds read. A remote attacker could send a specially crafted request that causes a limited...
CVE-2026-11939
- EPSS -
- Veröffentlicht 08.10.2026 21:17:54
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 may be vulnerable to audit log forgery.
CVE-2026-11936
- EPSS -
- Veröffentlicht 08.10.2026 21:17:54
- Zuletzt bearbeitet 08.10.2026 21:26:32
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 local management interface in certain configurations is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed a...