CVE-2024-45653: IBM Sterling Connect Direct Web Services
Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could disclose sensitive IP address information to authenticated users in responses that could be used in further attacks against the system.
Affected products
- IBM Sterling Connect Direct Web Services: version 6.0.0 only; version 6.1.0 only; version 6.2.0 only; version 6.3.0 only
Published 2025-01-19. Last modified 2026-06-17.