First published: Wed Sep 22 2021(Updated: )
IBM Sterling File Gateway 2.2.0.0 through 6.1.0.3 could allow a remote authenciated user to obtain sensitive information. By sending a specially crafted request, the user could disclose a valid filepath on the server which could be used in further attacks against the system. IBM X-Force ID: 199234.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling File Gateway | >=2.2.0.0<=6.1.0.3 | |
<=2.2.0.0 - 6.1.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for the IBM Sterling File Gateway vulnerability is CVE-2021-20563.
The severity of CVE-2021-20563 is medium.
A remote authenticated user can exploit CVE-2021-20563 by sending a specially crafted request to obtain sensitive information and disclose a valid filepath on the server.
IBM Sterling File Gateway versions 2.2.0.0 through 6.1.0.3 are affected by CVE-2021-20563.
The IBM X-Force ID for CVE-2021-20563 is 199234.