IBM Sterling File Gateway是美国国际商业机器(IBM)公司的一套文件传输软件。该软件可整合不同的文件传输活动中心,并帮助基于文件的数据通过因特网实现安全交换。 IBM Sterling File Gateway存在访问控制错误漏洞,该漏洞源于访问控制不当,可能允许经过身份验证的用户对其他用户的数据执行未经授权的操作。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Sterling File Gateway | 6.0.0.0 ~ 6.1.2.5 |
cpe:2.3:a:ibm:sterling_file_gateway:6.0.0.0:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-37526 | 6.5 MEDIUM | IBM Watson Query on Cloud Pak for Data information disclosure |
| CVE-2024-28786 | 6.5 MEDIUM | IBM QRadar SIEM information disclosure |
| CVE-2023-52292 | 6.4 MEDIUM | IBM Sterling File Gateway cross-site scripting |
| CVE-2024-38325 | 5.9 MEDIUM | IBM Storage Defender information disclosure |
| CVE-2024-38320 | 5.9 MEDIUM | IBM Storage Protect for Virtual Environments: Data Protection for VMware information discl |
| CVE-2024-27256 | 5.9 MEDIUM | IBM MQ Operator information disclosure |
| CVE-2023-46187 | 5.4 MEDIUM | IBM InfoSphere Master Data Management cross-site scripting |
| CVE-2024-37527 | 5.4 MEDIUM | IBM OpenPages with Watson cross-site scripting |
| CVE-2024-28771 | 4.8 MEDIUM | IBM Security Directory Integrator information disclosure |
| CVE-2024-28770 | 4.8 MEDIUM | IBM Security Directory Integrator information disclosure |
| CVE-2023-47159 | 4.3 MEDIUM | IBM Sterling File Gateway information disclosure |
| CVE-2024-28766 | 2.4 LOW | IBM Security Directory Integrator information disclosure |
No comments yet