IBM Sterling Connect:Direct Web Services 6.1.0, 6.2.0, and 6.3.0 could allow an authenticated user to spoof the identity of another user due to improper authorization which could allow the user to bypass access restrictions.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7231180 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2025-04-18 11:15
Updated : 2025-07-18 13:44
NVD link : CVE-2024-49808
Mitre link : CVE-2024-49808
CVE.ORG link : CVE-2024-49808
JSON object : View
Products Affected
microsoft
- windows
linux
- linux_kernel
ibm
- aix
- sterling_connect_direct_web_services
CWE
CWE-863
Incorrect Authorization
