Show filters
173 Total Results
Displaying 31-40 of 173
Sort by:
Attacker Value
Unknown

CVE-2024-31883

Disclosure Date: June 27, 2024 (last updated August 03, 2024)
IBM Security Verify Access 10.0.0.0 through 10.0.7.1, under certain configurations, could allow an unauthenticated attacker to cause a denial of service due to asymmetric resource consumption. IBM X-Force ID: 287615.
Attacker Value
Unknown

CVE-2023-30430

Disclosure Date: June 27, 2024 (last updated August 03, 2024)
IBM Security Verify Access 10.0.0 through 10.0.7.1 could allow a local user to obtain sensitive information from trace logs. IBM X-Force ID: 252183.
Attacker Value
Unknown

CVE-2024-35142

Disclosure Date: May 31, 2024 (last updated January 28, 2025)
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to execution of unnecessary privileges. IBM X-Force ID: 292418.
Attacker Value
Unknown

CVE-2024-35140

Disclosure Date: May 31, 2024 (last updated January 28, 2025)
IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to improper certificate validation. IBM X-Force ID: 292416.
Attacker Value
Unknown

CVE-2024-22338

Disclosure Date: May 31, 2024 (last updated May 31, 2024)
IBM Security Verify Access OIDC Provider 22.09 through 23.03 could disclose sensitive information to a local user due to hazardous input validation. IBM X-Force ID: 279978.
0
Attacker Value
Unknown

CVE-2024-31887

Disclosure Date: April 16, 2024 (last updated April 17, 2024)
IBM Security Verify Privilege 11.6.25 could allow an unauthenticated actor to obtain sensitive information from the SOAP API. IBM X-Force ID: 287651.
0
Attacker Value
Unknown

CVE-2024-31874

Disclosure Date: April 10, 2024 (last updated January 29, 2025)
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 uses uninitialized variables when deploying that could allow a local user to cause a denial of service. IBM X-Force ID: 287318.
Attacker Value
Unknown

CVE-2024-31873

Disclosure Date: April 10, 2024 (last updated January 29, 2025)
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 contains hard-coded credentials which it uses for its own inbound authentication that could be obtained by a malicious actor. IBM X-Force ID: 287317.
Attacker Value
Unknown

CVE-2024-31872

Disclosure Date: April 10, 2024 (last updated January 29, 2025)
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Open Source scripts due to missing certificate validation. IBM X-Force ID: 287316.
Attacker Value
Unknown

CVE-2024-31871

Disclosure Date: April 10, 2024 (last updated January 29, 2025)
IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Python scripts due to improper certificate validation. IBM X-Force ID: 287306.