Unrated severityNVD Advisory· Published Aug 22, 2024· Updated Mar 13, 2026
IBM Sterling Connect:Direct Web Services cross-site request forgery
CVE-2024-39744
Description
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
Affected products
1- cpe:2.3:a:ibm:sterling_connect\:direct:6.0.0.0:*:*:*:*:windows:*:*Range: 6.0, 6.1, 6.2, 6.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.ibm.com/support/pages/node/7166196mitrevendor-advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/297236mitrevdb-entry
News mentions
0No linked articles in our index yet.