Unrated severityNVD Advisory· Published Jan 19, 2025· Updated Jan 21, 2025
IBM Sterling Connect:Direct Web Services information disclosure
CVE-2024-45653
Description
IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could disclose sensitive IP address information to authenticated users in responses that could be used in further attacks against the system.
Affected products
2cpe:2.3:a:ibm:sterling_connect_direct_web_services:6.0.0.0:*:*:*:*:windows:*:*+ 1 more
- cpe:2.3:a:ibm:sterling_connect_direct_web_services:6.0.0.0:*:*:*:*:windows:*:*range: 6.0, 6.1, 6.2, 6.3
- (no CPE)range: 6.0, 6.1, 6.2, 6.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.