CVE-2023-25927
Summary
| CVE | CVE-2023-25927 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-05-12 18:15:00 UTC |
| Updated | 2023-05-24 16:35:00 UTC |
| Description | IBM Security Verify Access 10.0.0, 10.0.1, 10.0.2, 10.0.3, 10.0.4, and 10.0.5 could allow an attacker to crash the webseald process using specially crafted HTTP requests resulting in loss of access to the system. IBM X-Force ID: 247635. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Security Verify Access | 10.0.0 | All | All | All |
| Application | Ibm | Security Verify Access | 10.0.1 | All | All | All |
| Application | Ibm | Security Verify Access | 10.0.2 | All | All | All |
| Application | Ibm | Security Verify Access | 10.0.3 | All | All | All |
| Application | Ibm | Security Verify Access | 10.0.4 | All | All | All |
| Application | Ibm | Security Verify Access | 10.0.5 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| https/www.ibm.com/support/pages/node/6989653 | MISC | https | |
| Security Bulletin: Multiple Security Vulnerabilities have been fixed in IBM Security Verify Access | MISC | www.ibm.com | Vendor Advisory |
| IBM X-Force Exchange | MISC | exchange.xforce.ibmcloud.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.