Medium severity4.3NVD Advisory· Published Aug 22, 2024· Updated Jun 17, 2026
CVE-2024-39744
CVE-2024-39744
Description
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:ibm:sterling_connect\:direct:6.0.0.0:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:ibm:sterling_connect\:direct:6.0.0.0:*:*:*:*:windows:*:*range: 6.0, 6.1, 6.2, 6.3
- (no CPE)range: 6.0, 6.1, 6.2, and 6.3
Patches
Vulnerability mechanics
References
2- exchange.xforce.ibmcloud.com/vulnerabilities/297236nvdVDB EntryVendor Advisory
- www.ibm.com/support/pages/node/7166196nvdVendor Advisory
News mentions
0No linked articles in our index yet.