PT-2025-23090 · Ibm · Ibm Sterling Secure Proxy

CVE-2024-51453

·

Published

2025-05-28

·

Updated

2025-05-29

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Sterling Secure Proxy versions 6.2.0.0 through 6.2.0.1
Description The issue allows a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing dot dot sequences (../) to view arbitrary files on the system.
Recommendations For IBM Sterling Secure Proxy versions 6.2.0.0 through 6.2.0.1, consider restricting access to sensitive files and directories until a patch is available. As a temporary workaround, consider validating and sanitizing all URL requests to prevent directory traversal attacks.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-51453

Affected Products

Ibm Sterling Secure Proxy