IBM Security Verify Access
cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*
- >= 10.0, <= 10.0.9.1
An authentication bypass vulnerability has been identified in IBM Verify Identity Access Container versions 11.0 through 11.0.2, IBM Security Verify Access Container versions 10.0 through 10.0.9.1, IBM Verify Identity Access versions 11.0 through 11.0.2, and IBM Security Verify Access versions 10.0 through 10.0.9.1. Under certain load conditions, this vulnerability could allow an attacker to bypass authentication mechanisms and gain unauthorized access to the application.
Exploitation of this vulnerability could lead to unauthorized access to the application by bypassing authentication mechanisms.
Users are advised to update to IBM Verify Identity Access v11.0.2 IF1 or IBM Security Verify Access v10.0.9.1 IF1. Instructions for downloading these versions are available on the IBM Support Fix Central website. For container users, the updated version can be downloaded from the IBM Security Verify Access documentation site.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.