CVE-2025-36074

IBM Security Verify Directory (Container) 10.0.0 through 10.0.0.3 IBM Security Verify Directory could be vulnerable to malicious file upload by not validating file type. A privileged user could upload malicious files into the system that can be sent to victims for performing further attacks against the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7268907 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:security_verify_directory:*:*:*:*:*:*:*:*

History

13 May 2026, 23:08

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:security_verify_directory:*:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7268907 - () https://www.ibm.com/support/pages/node/7268907 - Vendor Advisory
First Time Ibm
Ibm security Verify Directory

23 Apr 2026, 00:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-23 00:16

Updated : 2026-05-13 23:08


NVD link : CVE-2025-36074

Mitre link : CVE-2025-36074

CVE.ORG link : CVE-2025-36074


JSON object : View

Products Affected

ibm

  • security_verify_directory
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type