First published: Thu Nov 14 2024(Updated: )
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to perform unauthorized actions to another user's data due to improper access controls.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling File Gateway | >=6.0.0.0<=6.1.2.5>=6.2.0.0<=6.2.0.1 | |
IBM Sterling File Gateway | <=6.0.0.0 - 6.1.2.5 | |
IBM Sterling File Gateway | <=6.2.0.0 - 6.2.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-22316 is classified as a medium severity vulnerability due to improper access controls in IBM Sterling File Gateway.
To fix CVE-2024-22316, you should upgrade IBM Sterling File Gateway to a patched version that resolves the access control issues.
CVE-2024-22316 affects IBM Sterling File Gateway versions from 6.0.0.0 to 6.1.2.5 and 6.2.0.0 to 6.2.0.1.
An authenticated user could perform unauthorized actions on another user's data because of the improper access controls in place.
There is no specific workaround for CVE-2024-22316, and it is recommended to upgrade to avoid potential unauthorized access.