← Back

CVE-2026-12004

nvd nist
Published: Aug 12, 2026Modified: Aug 17, 2026

JSON object

Loading...
8.7
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:H
Exploitability: 2.3 / Impact: 5.8
Source: psirt@us.ibm.com (Secondary)

Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 contains a format string injection vulnerability in the management interface that allows attackers to cause denial of service and information disclosure by crafting a malicious HTTP request.

Affected (4)

3 products
Security Verify Access
Verify Identity Access
Verify Identity Access Container
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 10.0.0 to 10.0.9.2
Version 10.0.9.2 interim_fix1
From 11.0 to 11.0.3
From 11.0.0.0 to 11.0.3.0

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.