VYPR

Sterling Connect:Express for UNIX

by IBM

CVEs (2)

  • CVE-2023-29260MedJul 19, 2023
    risk 0.42cvss 6.5epss 0.00

    IBM Sterling Connect:Express for UNIX 1.5 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: …

  • CVE-2023-29259LowJul 19, 2023
    risk 0.24cvss 3.7epss 0.00

    IBM Sterling Connect:Express for UNIX 1.5 browser UI is vulnerable to attacks that rely on the use of cookies without the SameSite attribute. IBM X-Force ID: 252055.