IBM Sterling Secure Proxy
cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*
- 6.0.0.0
- 6.0.0.1
- 6.0.0.2
- 6.0.0.3
- 6.1.0.0
- 6.2.0.0
A command injection vulnerability has been identified in IBM Sterling Secure Proxy versions 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0. This vulnerability could allow a privileged user to inject commands into the underlying operating system, arising from improper validation of certain input types.
Exploitation of this vulnerability could lead to unauthorized command execution on the underlying operating system with the privileges of the user running the IBM Sterling Secure Proxy application.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.