AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-12004

HIGH · CVSS 8.7 EPSS 0.35%

Source: NVD + CISA KEV + EPSS · Published 2026-08-12 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

IBM Security Verify Access versions 10.0 through 10.0.9.2 and IBM Verify Identity Access versions 11.0 through 11.0.3 are vulnerable to a format string injection in their management interface, which can be exploited by attackers to achieve denial of service and potentially disclose sensitive information. Organizations using these affected products should prioritize remediation efforts to mitigate the risk of exploitation, particularly those with critical security postures or sensitive data handling.

CVE
CVE-2026-12004
Severity
HIGH
CVSS
8.7
EPSS
0.35%

Original NVD Description

IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 and IBM Verify Identity Access Container 11.0 through 11.0.3 contains a format string injection vulnerability in the management interface that allows attackers to cause denial of service and information disclosure by crafting a malicious HTTP request.