Description
IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0
could allow a locally authenticated user to execute malicious scripts from outside of its control sphere.
could allow a locally authenticated user to execute malicious scripts from outside of its control sphere.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-32575 | IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0 could allow a locally authenticated user to execute malicious scripts from outside of its control sphere. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7247215 |
|
History
Mon, 15 Dec 2025 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm verify Identity Access
Ibm verify Identity Access Docker |
|
| CPEs | cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:10.0.9.0:-:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:10.0.9.0:interim_fix1:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:10.0.9.0:interim_fix2:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:10.0.9.0:-:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:10.0.9.0:interim_fix1:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:10.0.9.0:interim_fix2:*:*:*:*:*:* cpe:2.3:a:ibm:verify_identity_access:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:verify_identity_access:11.0.1.0:-:*:*:*:*:*:* cpe:2.3:a:ibm:verify_identity_access_docker:*:*:*:*:*:*:*:* cpe:2.3:a:ibm:verify_identity_access_docker:11.0.1.0:-:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm verify Identity Access
Ibm verify Identity Access Docker |
Mon, 06 Oct 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 06 Oct 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0 could allow a locally authenticated user to execute malicious scripts from outside of its control sphere. | |
| Title | IBM Security Verify Access code execution | |
| First Time appeared |
Ibm
Ibm security Verify Access Ibm security Verify Access Docker |
|
| Weaknesses | CWE-829 | |
| CPEs | cpe:2.3:a:ibm:security_verify_access:10.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:10.0.9.0:interm_fix2:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:11.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access:11.0.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:10.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:10.0.9.0:interm_fix2:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:11.0.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:security_verify_access_docker:11.0.1.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm security Verify Access Ibm security Verify Access Docker |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-10-06T19:59:35.611Z
Reserved: 2025-04-15T21:16:54.209Z
Link: CVE-2025-36355
Updated: 2025-10-06T19:59:32.011Z
Status : Analyzed
Published: 2025-10-06T17:16:05.320
Modified: 2025-12-15T19:23:15.803
Link: CVE-2025-36355
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD