IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
2025-02-04T21:15:26.537
2025-08-05T14:07:24.663
Analyzed
CVSSv3.1: 5.9 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | security_verify_access | ≤ 10.0.8 | Yes |
Application | ibm | verify_identity_access | ≤ 10.0.8 | Yes |