IBM Sterling Connect:Direct Web Services
cpe:2.3:a:ibm:sterling_connect_direct_web_services:*:*:*:*:*:*:*
- 6.1.0
- 6.2.0
- 6.3.0
An identity spoofing vulnerability has been identified in IBM Sterling Connect:Direct Web Services versions 6.1.0, 6.2.0, and 6.3.0. This vulnerability could allow an authenticated user to impersonate another user by exploiting improper authorization, potentially bypassing access restrictions.
Exploitation of this vulnerability could lead to unauthorized identity impersonation, allowing users to bypass access controls and potentially gain unauthorized privileges or access to resources.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.