PT-2026-108223 · Ibm · Ibm Security Verify Access+3

CVE-2026-12109

·

Published

2026-10-08

·

Updated

2026-10-08

CVSS v3.1

5.5

Medium

VectorAV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H
IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow an attacker with administrative privileges and access to the local management interface to execute arbitrary code due to an unbounded write to a fixed-size stack buffer.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-12109

Affected Products

Ibm Security Verify Access
Ibm Security Verify Access Container
Verify Identity Access
Ibm Verify Identity Access Container