CVE Vulnerabilities

CVE-2021-39070

Published: Feb 02, 2022 | Modified: Nov 21, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Security Verify Access 10.0.0.0, 10.0.1.0 and 10.0.2.0 with the advanced access control authentication service enabled could allow an attacker to authenticate as any user on the system. IBM X-Force ID: 215353.

Affected Software

NameVendorStart VersionEnd Version
Security_verify_accessIbm10.0.0 (including)10.0.0 (including)
Security_verify_accessIbm10.0.1.0 (including)10.0.1.0 (including)
Security_verify_accessIbm10.0.2.0 (including)10.0.2.0 (including)
Security_verify_access_dockerIbm10.0.0 (including)10.0.0 (including)
Security_verify_access_dockerIbm10.0.1.0 (including)10.0.1.0 (including)
Security_verify_access_dockerIbm10.0.2.0 (including)10.0.2.0 (including)

References