IBM Security Verify Access 10.0.0.0, 10.0.1.0 and 10.0.2.0 with the advanced access control authentication service enabled could allow an attacker to authenticate as any user on the system. IBM X-Force ID: 215353.
2022-02-02T12:15:08.140
2024-11-21T06:18:32.583
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | security_verify_access | 10.0.0 | Yes |
Application | ibm | security_verify_access | 10.0.1.0 | Yes |
Application | ibm | security_verify_access | 10.0.2.0 | Yes |
Application | ibm | security_verify_access_docker | 10.0.0 | Yes |
Application | ibm | security_verify_access_docker | 10.0.1.0 | Yes |
Application | ibm | security_verify_access_docker | 10.0.2.0 | Yes |