PT-2025-40918 · Ibm · Ibm Security Verify Access Docker+1

Published

2025-10-06

·

Updated

2025-12-15

·

CVE-2025-36354

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM Security Verify Access and IBM Security Verify Access Docker versions 10.0.0.0 through 10.0.9.0 IBM Security Verify Access and IBM Security Verify Access Docker versions 11.0.0.0 through 11.0.1.0
Description An unauthenticated user may be able to execute arbitrary commands with limited user privileges on the system. This is due to insufficient validation of user-provided input.
Recommendations Update IBM Security Verify Access to a version later than 10.0.9.0. Update IBM Security Verify Access Docker to a version later than 11.0.1.0.

Fix

OS Command Injection

Weakness Enumeration

Related Identifiers

BDU:2025-13672
CVE-2025-36354

Affected Products

Ibm Security Verify Access
Ibm Security Verify Access Docker