Directory Traversal Vulnerability in IBM Sterling Secure Proxy
CVE-2016-6023
7.5HIGH
Summary
A directory traversal vulnerability exists in IBM Sterling Secure Proxy versions 3.4.2 prior to iFix 8 and 3.4.3 prior to iFix 1. This flaw allows remote attackers to exploit the system via specially crafted URLs, potentially leading to unauthorized reading of arbitrary files on the server. Effective measures must be taken to mitigate this security risk and safeguard sensitive data.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved