CVE-2024-45647

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/01/2025
Last modified:
29/01/2025

Description

IBM Security Verify Access 10.0.0 through 10.0.8 and IBM Security Verify Access Docker 10.0.0 through 10.0.8 could allow could an unverified user to change the password of an expired user without prior knowledge of that password.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:* 10.0.0 (including) 10.0.8 (including)
cpe:2.3:a:ibm:security_verify_access_docker:*:*:*:*:*:*:*:* 10.0.0 (including) 10.0.8 (including)


References to Advisories, Solutions, and Tools