CVE-2025-0161: IBM Security Verify Access Appliance code injection
IBM Security Verify Access Appliance 10.0.0.0 through 10.0.0.9 and 11.0.0.0 could allow a local user to execute arbitrary code due to improper restrictions on code generation.
Other sources
IBM Security Verify Access Appliance could allow a local user to execute arbitrary code due to improper restrictions on code generation.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-0161?
CVE-2025-0161 has been assigned a high severity rating due to the potential for arbitrary code execution.
How do I fix CVE-2025-0161?
To fix CVE-2025-0161, upgrade your IBM Security Verify Access Appliance to version 10.0.0.10 or later.
Who is affected by CVE-2025-0161?
CVE-2025-0161 affects local users of IBM Security Verify Access Appliance versions 10.0.0.0 through 10.0.0.9 and 11.0.0.0.
What types of vulnerabilities does CVE-2025-0161 represent?
CVE-2025-0161 represents a local code execution vulnerability due to improper restrictions on code generation.
Can remote users exploit CVE-2025-0161?
No, CVE-2025-0161 is specifically exploitable by local users only.