IBM Sterling File Gateway是美国IBM公司的一套文件传输软件。该软件可整合不同的文件传输活动中心,并帮助基于文件的数据通过因特网实现安全交换。 IBM Sterling File Gateway 存在安全漏洞,该漏洞源于没有在授权令牌或会话cookie上设置安全属性。攻击者可利用该漏洞通过向用户发送http://链接或将此链接植入用户所访问的站点来获得cookie值。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Sterling File Gateway | 2.2.0.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-4475 | IBM Sterling B2B Integrator 安全漏洞 | |
| CVE-2020-4476 | IBM Sterling File Gateway 安全漏洞 | |
| CVE-2020-4566 | IBM Sterling B2B Integrator 安全漏洞 | |
| CVE-2020-4647 | IBM Sterling File Gateway SQL注入漏洞 | |
| CVE-2020-4655 | IBM Sterling B2B Integrator SQL注入漏洞 | |
| CVE-2020-4671 | IBM Sterling B2B Integrator 日志信息泄露漏洞 | |
| CVE-2020-4672 | IBM Business Automation Workflow 跨站脚本漏洞 | |
| CVE-2020-4692 | IBM Sterling B2B Integrator 路径遍历漏洞 | |
| CVE-2020-4700 | IBM Sterling B2B Integrator 授权问题漏洞 | |
| CVE-2020-4705 | IBM Sterling B2B Integrator 跨站脚本漏洞 | |
| CVE-2020-4763 | IBM Sterling File Gateway 安全漏洞 |
No comments yet