VYPR
Unrated severityNVD Advisory· Published Jan 19, 2025· Updated Jan 21, 2025

IBM Sterling Connect:Direct Web Services information disclosure

CVE-2024-45653

Description

IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could disclose sensitive IP address information to authenticated users in responses that could be used in further attacks against the system.

Affected products

2
  • cpe:2.3:a:ibm:sterling_connect_direct_web_services:6.0.0.0:*:*:*:*:windows:*:*+ 1 more
    • cpe:2.3:a:ibm:sterling_connect_direct_web_services:6.0.0.0:*:*:*:*:windows:*:*range: 6.0, 6.1, 6.2, 6.3
    • (no CPE)range: 6.0, 6.1, 6.2, 6.3

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.