First published: Fri Jul 20 2018(Updated: )
IBM Sterling File Gateway 2.2.0 through 2.2.6 could allow a remote authenticated attacker to obtain sensitive information displayed in the URL that could lead to further attacks against the system. IBM X-Force ID: 140688.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling File Gateway | >=2.2.0<=2.2.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
IBM Sterling File Gateway 2.2.0 through 2.2.6 could allow a remote authenticated attacker to obtain sensitive information displayed in the URL that could lead to further attacks against the system.
The severity of CVE-2018-1470 vulnerability is rated as medium with a severity value of 4.3.
The CVE-2018-1470 vulnerability can be exploited by a remote authenticated attacker who can obtain sensitive information displayed in the URL.
Yes, IBM has released a fix for the IBM Sterling File Gateway 2.2.0 through 2.2.6 vulnerability. It is recommended to upgrade to the latest version of the software.
You can find more information about the CVE-2018-1470 vulnerability in the following references: [link1](http://www.ibm.com/support/docview.wss?uid=ibm10716997), [link2](http://www.securityfocus.com/bid/104885), [link3](https://exchange.xforce.ibmcloud.com/vulnerabilities/140688)