Vulnerability Database

313,825

Total vulnerabilities in the database

CVE-2025-36354

IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0

could allow an unauthenticated user to execute arbitrary commands with lower user privileges on the system due to improper validation of user supplied input.

  • Published: Oct 6, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-36354
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.3
  • AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

CWEs:

OWASP TOP 10:

Software From Fixed in
ibm / security_verify_access 10.0.0.0 10.0.9.0
ibm / security_verify_access 10.0.9.0 10.0.9.0.x
ibm / security_verify_access 10.0.9.0-interim_fix1 10.0.9.0-interim_fix1.x
ibm / security_verify_access 10.0.9.0-interim_fix2 10.0.9.0-interim_fix2.x
ibm / security_verify_access_docker 10.0.0.0 10.0.9.0
ibm / security_verify_access_docker 10.0.9.0 10.0.9.0.x
ibm / security_verify_access_docker 10.0.9.0-interim_fix1 10.0.9.0-interim_fix1.x
ibm / security_verify_access_docker 10.0.9.0-interim_fix2 10.0.9.0-interim_fix2.x
ibm / verify_identity_access 11.0.0.0 11.0.1.0
ibm / verify_identity_access 11.0.1.0 11.0.1.0.x
ibm / verify_identity_access_docker 11.0.0.0 11.0.1.0
ibm / verify_identity_access_docker 11.0.1.0 11.0.1.0.x