SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-11904

MEDIUM · CVSS 5.3 EPSS 0.29%

Source: NVD + CISA KEV + EPSS · Published 2026-07-30 · Last synced 2026-08-29

CyberRota Analysis

AI-Generated

IBM Verify Identity Access and IBM Security Verify Access products, specifically versions 11.0 to 11.0.2 and 10.0 to 10.0.9.1, are vulnerable to information disclosure due to detailed technical error messages being exposed in the browser. This could enable remote attackers to gather sensitive information, potentially facilitating further attacks on the system. Organizations using these versions should prioritize remediation to mitigate the risk of exploitation.

CVE
CVE-2026-11904
Severity
MEDIUM
CVSS
5.3
EPSS
0.29%

Original NVD Description

IBM Verify Identity Access 11.0 through 11.0.2 and IBM Security Verify Access 10.0 through 10.0.9.1 and IBM Verify Identity Access Container 11.0 through 11.0.2 and IBM Security Verify Access Container 10.0 through 10.0.9.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.

Related CVEs

Other vulnerabilities affecting the same vendor(s)