What is CVE-2026-13267?
CVE-2026-13267 is a vulnerability in IBM Security Verify Access (10.0-10.0.9.2) and IBM Verify Identity Access (11.0-11.0.3) that allows an authenticated user to gain privileges of another user via a specially crafted request. Affected systems should apply the security updates provided by IBM.
Azərbaycanca: CVE-2026-13267, IBM Security Verify Access (10.0-10.0.9.2) və IBM Verify Identity Access (11.0-11.0.3) məhsullarında autentifikasiya olunmuş istifadəçiyə xüsusi hazırlanmış sorğu vasitəsilə digər istifadəçi səlahiyyətlərini əldə etməyə imkan verən zəiflikdir. Təsirə məruz qalan sistemlərdə IBM tərəfindən təqdim olunan təhlükəsizlik yeniləmələri tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-269; shared vendor: IBM
FAQ2
Which IBM product versions are affected by CVE-2026-13267?
This vulnerability affects IBM Security Verify Access versions 10.0 through 10.0.9.2, as well as IBM Verify Identity Access versions 11.0 through 11.0.3.
What can an authenticated attacker gain by exploiting CVE-2026-13267?
An authenticated attacker can gain privileges of another user via a specially crafted request.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.