IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7279510 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-07-30 19:17
Updated : 2026-08-12 20:07
NVD link : CVE-2026-11904
Mitre link : CVE-2026-11904
CVE.ORG link : CVE-2026-11904
JSON object : View
Products Affected
ibm
- verify_identity_access_container
- verify_identity_access
CWE
CWE-209
Generation of Error Message Containing Sensitive Information
