CVE-2017-1548: Path Traversal
IBM Sterling File Gateway 2.2 could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 131288.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-1548?
CVE-2017-1548 is a vulnerability in IBM Sterling File Gateway 2.2 that allows a remote attacker to traverse directories on the system and view arbitrary files.
What is the severity of CVE-2017-1548?
CVE-2017-1548 has a severity score of 5.3, which is classified as medium.
How does CVE-2017-1548 affect IBM Sterling File Gateway 2.2?
CVE-2017-1548 affects IBM Sterling File Gateway 2.2 by allowing a remote attacker to traverse directories on the system and view arbitrary files.
How can I fix the vulnerability CVE-2017-1548?
To fix CVE-2017-1548, update IBM Sterling File Gateway to a version that does not have this vulnerability.
Where can I find more information about CVE-2017-1548?
You can find more information about CVE-2017-1548 in the IBM Security Bulletin: http://www.ibm.com/support/docview.wss?uid=swg22010738