CVE-2021-20584: High severity IBM Sterling File Gateway vulnerability
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow a remote attacker to upload arbitrary files, caused by improper access controls. IBM X-Force ID: 199397.
Other sources
IBM Sterling File Gateway could allow a remote attacker to upload arbitrary files, caused by improper access controls.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-20584.
What is the title of this vulnerability?
The title of this vulnerability is 'IBM Sterling File Gateway could allow a remote attacker to upload arbitrary files caused by improper access controls.'
What is the severity rating of CVE-2021-20584?
The severity rating of CVE-2021-20584 is 7.5 (high).
Which software versions are affected by this vulnerability?
The affected software versions are IBM Sterling File Gateway 2.2.0.0 - 5.2.6.5_4, 6.0.0.0 - 6.0.0.6, 6.0.1.0 - 6.0.3.4, and 6.1.0.0 - 6.1.0.2.
How can I patch this vulnerability?
You can patch this vulnerability by applying the relevant fix provided by IBM. Please refer to the vendor's support page for more information.