CVE-2024-39747: IBM Sterling Connect:Direct Web Services information disclosure
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 uses default credentials for potentially critical functionality.
Other sources
IBM Sterling Connect:Direct Web Services uses default credentials for potentially critical functionality.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-39747?
CVE-2024-39747 has the potential to be critical due to the use of default credentials for significant functionality.
How do I fix CVE-2024-39747?
To mitigate CVE-2024-39747, change the default credentials and apply the latest security patches provided by IBM.
Which versions of IBM Sterling Connect:Direct Web Services are affected by CVE-2024-39747?
CVE-2024-39747 affects IBM Sterling Connect:Direct Web Services versions 6.0, 6.1, 6.2, and 6.3.
What are the risks associated with CVE-2024-39747?
CVE-2024-39747 poses risks of unauthorized access and potential data breaches due to default credential usage.
How can I verify if my system is vulnerable to CVE-2024-39747?
You can verify vulnerability to CVE-2024-39747 by checking if you are using affected versions of IBM Sterling Connect:Direct Web Services with default credentials.