First published: Thu Aug 22 2024(Updated: )
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Any of | ||
IBM Sterling Connect Direct Web Services | =6.0 | |
IBM Sterling Connect Direct Web Services | =6.1.0 | |
IBM Sterling Connect Direct Web Services | =6.2.0 | |
IBM Sterling Connect Direct Web Services | =6.3.0 | |
Any of | ||
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
IBM Sterling Connect:Direct Web Services | <=6.3.0 | |
IBM Sterling Connect:Direct Web Services | <=6.1.0 | |
IBM Sterling Connect:Direct Web Services | <=6.2.0 | |
IBM Connect:Direct Web Services | <=6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.