First published: Wed Apr 19 2023(Updated: )
IBM Security Verify Access could allow an attacker to crash the webseald process using specially crafted HTTP requests resulting in loss of access to the system.
IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and 10.0.5 could allow an attacker to crash the webseald process using specially crafted HTTP requests resulting in loss of access to the system. IBM X-Force ID: 247635.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Security Verify Access | =10.0.0 | |
IBM Security Verify Access | =10.0.1 | |
IBM Security Verify Access | =10.0.2 | |
IBM Security Verify Access | =10.0.3 | |
IBM Security Verify Access | =10.0.4 | |
IBM Security Verify Access | =10.0.5 | |
IBM Security Verify Access Docker | <=10.0.X | |
IBM Security Verify Access | <=10.0.X |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2023-25927.
The severity level of CVE-2023-25927 is high.
CVE-2023-25927 affects IBM Security Verify Access versions 10.0.0 to 10.0.5.
CVE-2023-25927 can allow an attacker to crash the webseald process, resulting in loss of access to the system.
Yes, you can find references for CVE-2023-25927 [here](https://exchange.xforce.ibmcloud.com/vulnerabilities/247635) and [here](https://www.ibm.com/support/pages/node/6989653).