IBM Sterling Secure Proxy Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability has been identified in IBM Sterling Secure Proxy versions 6.2.0.0 prior to 6.2.0.1. This vulnerability could allow a remote attacker to traverse directories on the system by sending a specially crafted URL request that includes 'dot dot' sequences. Exploitation of this vulnerability could enable the attacker to view arbitrary files on the system.

Impact

Exploitation of this vulnerability could lead to unauthorized access to files on the system, potentially exposing sensitive information.

Remediation

Users can upgrade to IBM Sterling Secure Proxy version 6.2.0.1 iFix 02 to address this vulnerability. The update is available through the IBM Fix Central.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
0.6
exploitability
5.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.