PT-2017-12965 · Ibm · Ibm Sterling File Gateway

Published

2017-06-22

·

Updated

2019-10-03

·

CVE-2017-1326

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Sterling File Gateway (affected versions not specified)
Description The issue allows users to update data related to other users by manipulating parameters passed in the POST request, due to improper restriction of user requests based on permission level.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-1326

Affected Products

Ibm Sterling File Gateway