CVE-2024-31872: IBM Security Verify Access

High severity, CVSS 8.1. EPSS: 0.6% chance of exploitation in the next 30 days.

IBM Security Verify Access Appliance 10.0.0 through 10.0.7 could allow a malicious actor to conduct a man in the middle attack when deploying Open Source scripts due to missing certificate validation. IBM X-Force ID: 287316.

Affected products

  • IBM Security Verify Access: from 10.0.0, up to and including 10.0.7

Published 2024-04-10. Last modified 2026-06-17.