IBM Security Verify Access and IBM Security Verify Access Docker 10.0.0.0 through 10.0.9.0 and 11.0.0.0 through 11.0.1.0 could allow a locally authenticated user to escalate their privileges to root due to execution with more privileges than required.
The vulnerability consists in certain system components being executed with excessive system privileges. A locally logged-in user can exploit this mechanism to gain full root access to the system or container. The bug affects both traditional deployments and containerized environments based on Docker.
An attacker with local access can obtain full administrative (root) privileges, allowing them to take control of the system, read and modify sensitive data, and destabilize the environment.
Apply patches available from the vendor according to references: https://www.ibm.com/support/pages/node/7247215. As additional remedial measures, restrict local access to the system only to trusted users and apply the principle of least privilege in containerized environments.
IBM Security Verify Access and IBM Security Verify Access Docker in versions 10.0.0.0 – 10.0.9.0 and 11.0.0.0 – 11.0.1.0 (also affects IBM Verify Identity Access and IBM Verify Identity Access Docker variants in the same version ranges).
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:HIBM Security Verify Access
APPIbm10.0.9.010.0.0.0 – 10.0.9.0 (excl.)IBM Security Verify Access Docker
APPIbm10.0.9.010.0.0.0 – 10.0.9.0 (excl.)IBM Verify Identity Access
APPIbm11.0.1.011.0.0.0 – 11.0.1.0 (excl.)IBM Verify Identity Access Docker
APPIbm11.0.1.011.0.0.0 – 11.0.1.0 (excl.)
Related vulnerabilities
Privilege escalation do root w IBM Security Verify Access i Verify Identity Access
IBM Security Verify Access — zakodowane na stałe poświadczenia (hard-coded credentials)
IBM Security Verify Access — zakodowane na stałe poświadczenia (hard-coded credentials)
IBM Security Verify Access — zdalne wykonanie poleceń (command injection)
IBM Security Verify Access — obejście uwierzytelnienia jako dowolny użytkownik