CVE-2025-2827: IBM Sterling File Gateway
Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 could disclose sensitive installation directory information to an authenticated user that could be used in further attacks against the system.
Affected products
- IBM Sterling File Gateway: from 6.0.0.0, before 6.1.2.7_1 (fixed in 6.1.2.7_1); from 6.2.0.0, before 6.2.0.5 (fixed in 6.2.0.5)
Published 2025-07-08. Last modified 2026-06-17.