CVE-2020-4259

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
14/05/2020
Last modified:
15/05/2020

Description

IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 could allow an authenticated user could manipulate cookie information and remove or add modules from the cookie to access functionality not authorized to. IBM X-Force ID: 175638.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:* 2.2.0.0 (including) 2.2.6.5_1 (including)
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:* 6.0.0.0 (including) 6.0.3.1 (including)
cpe:2.3:o:hp:hp-ux:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:i:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:oracle:solaris:-:*:*:*:*:*:*:*