Description


IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow an attacker with administrative privileges and access to the local management interface to execute arbitrary code due to an unbounded write to a fixed-size stack buffer.

Weaknesses



CWE-787

CVSS impact metrics


CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H

5.5 · Medium

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2026-10-08T21:17:55.070Z

19 hours ago

Last modified

2026-10-09T14:25:25.543Z

2 hours ago