Improper Validation in IBM Verify Identity Access Leading to Command Execution
CVE-2026-12101

Currently unrated

What is CVE-2026-12101?

IBM Verify Identity Access is susceptible to a security flaw that allows an administrator to execute commands beyond their authorization. This occurs due to inadequate validation of user-supplied requests, potentially leading to unauthorized operations within the system. Administrators should review user access privileges and apply the recommended patches to mitigate this vulnerability.

Affected Version(s)

Security Verify Access 10.0.0 <= 10.0.9.2 Interim Fix 001

Security Verify Access Container 10.0.0 <= 10.0.9.2 Interim Fix 001

Verify Identity Access 11.0.0 <= 11.0.3 Interim Fix 001

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.