Server-Side Request Forgery Vulnerability in IBM Sterling File Gateway
CVE-2026-7253

6MEDIUM

Key Information:

Vendor

IBM

Vendor
CVE Published:
22 June 2026

What is CVE-2026-7253?

IBM Sterling File Gateway, part of IBM Watson Speech Services, contains a Server-Side Request Forgery (SSRF) vulnerability. This flaw allows an authenticated attacker to potentially send unauthorized requests from the system, which could lead to network enumeration and the facilitation of further attacks. Prompt remediation is essential to secure affected systems and mitigate potential threats.

Affected Version(s)

Sterling B2B Integrator 6.2.1.0 <= 6.2.1.1_2

Sterling B2B Integrator 6.2.2.0 <= 6.2.2.0_1

Sterling File Gateway 6.2.1.0 <= 6.2.1.1_2

References

CVSS V3.1

Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.