CVE-2024-49804: IBM Security Verify Access

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

IBM Security Verify Access Appliance 10.0.0 through 10.0.8 could allow a locally authenticated non-administrative user to escalate their privileges due to unnecessary permissions used to perform certain tasks.

Affected products

  • IBM Security Verify Access: from 10.0.0, up to and including 10.0.8

Published 2024-11-29. Last modified 2026-06-17.