CVE-2023-31004: IBM Security Verify Access

Critical severity, CVSS 9.0. EPSS: 1% chance of exploitation in the next 30 days.

IBM Security Access Manager Container (IBM Security Verify Access Appliance 10.0.0.0 through 10.0.6.1 and IBM Security Verify Access Docker 10.0.0.0 through 10.0.6.1) could allow a remote attacker to gain access to the underlying system using man in the middle techniques. IBM X-Force ID: 254765.

Affected products

  • IBM Security Verify Access: from 10.0.0.0, up to and including 10.0.6.1
  • IBM Security Verify Access Docker: from 10.0.0.0, up to and including 10.0.6.1

Published 2024-02-03. Last modified 2026-06-17.