IBM Sterling Connect:Direct Web Services是美国国际商业机器(IBM)公司的一套基于文件的点对点文件传输解决方案。 IBM Sterling Connect:Direct Web Services 6.1.0版本、6.2.0版本和6.3.0版本存在代码问题漏洞,该漏洞源于浏览器关闭后未使会话失效,可能导致身份冒充。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | Sterling Connect:Direct Web Services | 6.1.0 |
cpe:2.3:a:ibm:sterling_connect_direct_web_services:6.1.0.0:*:*:*:*:windows:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-49808 | 6.3 MEDIUM | IBM Sterling Connect:Direct Web Services improper authorization |
| CVE-2025-2950 | 5.4 MEDIUM | IBM i improper HTTP header neutralization |
No comments yet