CVE-2023-32338: IBM Sterling External Authentication Server
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
IBM Sterling Secure Proxy and IBM Sterling External Authentication Server 6.0.3 and 6.1.0 stores user credentials in plain clear text which can be read by a local user with container access. IBM X-Force ID: 255585.
Affected products
- IBM Sterling External Authentication Server: version 6.0.3.0 only; version 6.1.0 only
- IBM Sterling Secure Proxy: version 6.0.3 only; version 6.1.0 only
Published 2023-09-05. Last modified 2026-06-17.