Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-8861

Опубликовано: 17 июл. 2026
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

IBM Security Verify could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.  This information could be used in further attacks against the system.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:ibm:security_verify_access:*:*:*:*:*:*:*:*
Версия от 10.0.0 (включая) до 10.0.9.2 (исключая)
cpe:2.3:a:ibm:security_verify_access_container:*:*:*:*:*:*:*:*
Версия от 10.0.0.0 (включая) до 10.0.9.1 (включая)
cpe:2.3:a:ibm:verify_identity_access:*:*:*:*:*:*:*:*
Версия от 11.0 (включая) до 11.0.3 (исключая)
cpe:2.3:a:ibm:verify_identity_access_container:*:*:*:*:*:*:*:*
Версия от 11.0.0.0 (включая) до 11.0.2 (включая)

EPSS

Процентиль: 34%
0.00402
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 5.3
github
2 месяца назад

IBM Security Verify could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.  This information could be used in further attacks against the system.

EPSS

Процентиль: 34%
0.00402
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-209