← Back

CVE-2026-12359

nvd nist
Published: Aug 12, 2026Modified: Aug 17, 2026

JSON object

Loading...
8.1
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.2 / Impact: 5.9
Source: psirt@us.ibm.com (Secondary)

Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 could allow a remote attacker to access sensitive information due to an inconsistent interpretation of an HTTP request by a reverse proxy.

Affected (4)

3 products
Security Verify Access
Verify Identity Access
Verify Identity Access Container
Configuration A
4 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
From 10.0.0 to 10.0.9.2
Version 10.0.9.2 interim_fix1
From 11.0 to 11.0.3
From 11.0.0.0 to 11.0.3.0

References (1)

Source: psirt@us.ibm.com
Vendor Advisory

Timeline

No history available yet.