CVE-2024-38337: IBM Sterling Secure Proxy
Critical severity, CVSS 9.1. EPSS: 0.5% chance of exploitation in the next 30 days.
IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.
Affected products
- IBM Sterling Secure Proxy: from 6.0.0.0, before 6.0.3.1 (fixed in 6.0.3.1); version 6.1.0.0 only; version 6.2.0.0 only
Published 2025-01-19. Last modified 2026-06-17.