Known vulnerabilities in IBM Sterling File Gateway - page 3

Software CPE: cpe:2.3:a:ibm_corporation:ibm_sterling_file_gateway:*:*:*:*:*:*:*:*
Total vulnerabilities: 74
Public exploits: 5
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting IBM Sterling File Gateway IBM Sterling File Gateway is affected by 74 known vulnerabilities: 1 critical, 9 high, 38 medium, 26 low Critical High Medium Low

Vulnerabilities (74)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU113088 - Use of Web Link to Untrusted Target with window.opener Access
CVE-2025-33014
CWE-1022 Low
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 21.07.2025 SB2025072129
#VU112257 - Improper input validation
CVE-2025-31672
CWE-20 Medium
No
No
6.1.2.7.1, 6.2.0.5, 6.2.1.1 04.07.2025 SB20250704104
SB2025070708
SB2025071664
and 23 more
#VU111283 - Use of Web Browser Cache Containing Sensitive Information
CVE-2025-1348
CWE-525 Low
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 18.06.2025 SB2025061865
#VU111281 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-1349
CWE-79 Low
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 18.06.2025 SB2025061863
#VU111280 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-54183
CWE-79 Low
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 18.06.2025 SB2025061862
#VU111278 - Cross-Site Request Forgery (CSRF)
CVE-2024-54172
CWE-352 Medium
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 18.06.2025 SB2025061860
#VU105112 - Resource exhaustion
CVE-2025-23184
CWE-400 Medium
No
No
6.1.2.7.1, 6.2.0.5, 6.2.1.1 28.02.2025 SB2025022807
SB2025030340
SB2025041017
and 40 more
#VU103769 - Resource exhaustion
CVE-2025-25193
CWE-400 Low
No
No
6.1.2.7.1, 6.2.0.5, 6.2.1.1 11.02.2025 SB2025021186
SB202502197190
SB2025030409
and 56 more
#VU100780 - Exposure of sensitive information to an unauthorized actor
CVE-2024-31141
CWE-200 Medium
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 21.11.2024 SB2024112150
SB2024120226
SB2024120331
and 34 more
#VU100676 - Improper Authorization
CVE-2024-38827
CWE-285 Medium
No
No
6.1.2.7, 6.2.0.5, 6.2.1.0 19.11.2024 SB2024111987
SB2025012185
SB2025012188
and 30 more
#VU86069 - Exposure of sensitive information to an unauthorized actor
CVE-2016-1000345
CWE-200 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.02.2024 SB2024020522
SB2025011564
SB2018091126
#VU86068 - Key Management Errors
CVE-2016-1000346
CWE-320 Low
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.02.2024 SB2024020522
SB2025011564
SB2018091126
#VU86066 - Cryptographic Issues
CVE-2016-1000344
CWE-310 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.02.2024 SB2024020522
SB2025011564
SB2025011620
and 1 more
#VU86062 - Cryptographic Issues
CVE-2016-1000352
CWE-310 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.02.2024 SB2024020522
SB2025011564
SB2025011620
and 1 more
#VU55035 - Information Exposure Through Timing Discrepancy
CVE-2020-15522
CWE-208 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 20.07.2021 SB2021072033
SB2021062601
SB2022062815
and 11 more
#VU48199 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26939
CWE-200 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 02.11.2020 SB2020110803
SB2024020522
SB2024040108
and 3 more
#VU27043 - Improper input validation
CVE-2018-1000180
CWE-20 Medium
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 21.04.2020 SB2020042107
SB2018092415
SB2021042531
and 17 more
#VU13589 - Cryptographic Issues
CVE-2016-1000341
CWE-310 Low
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.07.2018 SB2018060417
SB2024020522
SB2025011564
and 1 more
#VU13587 - Cryptographic Issues
CVE-2016-1000339
CWE-310 Low
No
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 05.07.2018 SB2018060415
SB2024020522
SB2025011564
and 1 more
#VU9750 - Exposure of sensitive information to an unauthorized actor
CVE-2017-13098
CWE-200 Low
Available
No
6.0.3.7, 6.1.0.5, 6.1.1.2, 6.1.2.0 22.12.2017 SB2017121312
SB2020050421
SB2018072803
and 5 more


Showing elements 41 - 60 out of 74