CVE-2024-49806: IBM Security Verify Access Appliance hard coded credentials
IBM Security Verify Access Appliance 10.0.0 through 10.0.8
contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
Other sources
IBM Security Verify Access Appliance contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-49806?
CVE-2024-49806 has been assigned a high severity rating due to the presence of hard-coded credentials.
How do I fix CVE-2024-49806?
To mitigate CVE-2024-49806, upgrade IBM Security Verify Access to a version beyond 10.0.8.
What versions of IBM Security Verify Access are affected by CVE-2024-49806?
CVE-2024-49806 affects IBM Security Verify Access versions 10.0.0 through 10.0.8.
What types of credentials are involved in CVE-2024-49806?
CVE-2024-49806 involves hard-coded credentials used for inbound authentication, outbound communication, and data encryption.
Is CVE-2024-49806 related to any data breaches?
As of now, there are no public reports linking CVE-2024-49806 to specific data breaches.