CVE-2026-12109
Security vulnerabilities have been found in IBM Verify Identity Access and IBM Security Verify Access
CVSS Score
5.5
EPSS Score
0.0%
EPSS Percentile
0th
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow an attacker with administrative privileges and access to the local management interface to execute arbitrary code due to an unbounded write to a fixed-size stack buffer.
| CWE | CWE-787 |
| Vendor | ibm |
| Product | security verify access |
| Published | Oct 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for ibm security verify access
Be the first to know when new medium vulnerabilities affecting ibm security verify access are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H Attack Vector
Network
Attack Complexity
High
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
Low
Integrity
Low
Availability
High
Affected Versions
IBM / Security Verify Access
10.0 โค 10.0.9.2
IBM / Verify Identity Access
11.0 โค 11.0.3
IBM / Security Verify Access Container
10.0 โค 10.0.9.2
IBM / Verify Identity Access Container
11.0 โค 11.0.3