CVE-2026-12109EPSS p10.3%

CVE-2026-12109CVE-2026-12109

ibm / security_verify_access

Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow an attacker with administrative privileges and access to the local management interface to execute arbitrary code due to an unbounded write to a fixed-size stack buffer.

Scoring

CVSS 5.5 ()
VectorCVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:H
EPSS0.21% probability of exploitation · percentile 10.3% · 2026-10-10T12:00:23Z
Last modified2026-10-10
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.