Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2024-54648 | IBM Verify Identity Access Digital Credentials 24.06 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. |
Solution
IBM strongly recommends that customers update to the latest versions of software. The IBM Verify Identity Access Digital Credentials can be pulled from IBM Cloud Registry using the following command - docker pull icr.io/ivia/ivia-digital-credentials:latest
Workaround
No workaround given by the vendor.
Link | Providers |
---|---|
https://www.ibm.com/support/pages/node/7235710 |
![]() ![]() |
Wed, 20 Aug 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ibm verify Identity Access Digital Credentials
|
|
CPEs | cpe:2.3:a:ibm:verify_identity_access_digital_credentials:24.06:*:*:*:*:*:*:* | |
Vendors & Products |
Ibm verify Identity Access Digital Credentials
|
Fri, 06 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Jun 2025 02:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | IBM Verify Identity Access Digital Credentials 24.06 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. | |
Title | IBM Verify Identity Access Digital Credentials information disclosure | |
First Time appeared |
Ibm
Ibm security Verify Access |
|
Weaknesses | CWE-209 | |
CPEs | cpe:2.3:a:ibm:security_verify_access:24.06:*:*:*:*:*:*:* | |
Vendors & Products |
Ibm
Ibm security Verify Access |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-08-24T11:58:08.961Z
Reserved: 2024-12-20T13:55:07.212Z
Link: CVE-2024-56342

Updated: 2025-06-06T15:00:13.503Z

Status : Analyzed
Published: 2025-06-06T02:15:21.790
Modified: 2025-08-20T17:38:33.830
Link: CVE-2024-56342

No data.

No data.