2 results (0.002 seconds)

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

06 Jun 2025 — IBM Verify Identity Access Digital Credentials 24.06 could allow an authenticated user to crash the service with a specially crafted POST request. • https://www.ibm.com/support/pages/node/7235710 • CWE-771: Missing Reference to Active Allocated Resource •

CVSS: 4.3EPSS: 0%CPEs: 1EXPL: 0

06 Jun 2025 — IBM Verify Identity Access Digital Credentials 24.06 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. • https://www.ibm.com/support/pages/node/7235710 • CWE-209: Generation of Error Message Containing Sensitive Information •