CVE-2020-4476: High severity ibm sterling file gateway vulnerability
IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 181778.
Other sources
IBM Sterling File Gateway could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID of IBM Sterling File Gateway?
The vulnerability ID of IBM Sterling File Gateway is CVE-2020-4476.
What is the severity of CVE-2020-4476?
The severity of CVE-2020-4476 is high with a CVSS score of 7.5.
How does IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 allow a remote attacker to obtain sensitive information?
IBM Sterling File Gateway 2.2.0.0 through 2.2.6.5 and 6.0.0.0 through 6.0.3.2 allows a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
What can attackers do with the sensitive information obtained through the vulnerability?
Attackers can use the sensitive information obtained through the vulnerability for further attacks against the system.
How can I fix CVE-2020-4476?
To fix CVE-2020-4476, apply the available patch provided by IBM Sterling File Gateway.