CVE-2021-39086: Medium severity IBM Sterling File Gateway vulnerability
IBM Sterling File Gateway 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 215889.
Other sources
IBM Sterling File Gateway could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Sterling File Gateway vulnerability?
The vulnerability ID for this IBM Sterling File Gateway vulnerability is CVE-2021-39086.
What is the severity of the IBM Sterling File Gateway vulnerability?
The severity of the IBM Sterling File Gateway vulnerability is medium with a severity value of 5.3.
How can a remote attacker exploit the IBM Sterling File Gateway vulnerability?
A remote attacker can exploit the IBM Sterling File Gateway vulnerability to obtain sensitive information when a detailed technical error message is returned in the browser.
Which versions of IBM Sterling File Gateway are affected by this vulnerability?
IBM Sterling File Gateway versions 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 are affected by this vulnerability.
How can I fix the IBM Sterling File Gateway vulnerability?
To fix the IBM Sterling File Gateway vulnerability, apply the necessary patches provided by IBM.