CVE-2024-38337

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.
References
Link Resource
https://www.ibm.com/support/pages/node/7179166 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.2.0.0:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-01-19 15:15

Updated : 2025-07-25 20:38


NVD link : CVE-2024-38337

Mitre link : CVE-2024-38337

CVE.ORG link : CVE-2024-38337


JSON object : View

Products Affected

ibm

  • sterling_secure_proxy
  • aix
  • linux_on_ibm_z

microsoft

  • windows

linux

  • linux_kernel
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource