CVE-2024-38337

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.
References
Link Resource
https://www.ibm.com/support/pages/node/7179166 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.2.0.0:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

25 Jul 2025, 20:38

Type Values Removed Values Added
First Time Linux
Microsoft windows
Linux linux Kernel
Ibm linux On Ibm Z
Ibm aix
Microsoft
Ibm sterling Secure Proxy
Ibm
CPE cpe:2.3:a:ibm:sterling_secure_proxy:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.2.0.0:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
References () https://www.ibm.com/support/pages/node/7179166 - () https://www.ibm.com/support/pages/node/7179166 - Vendor Advisory

19 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-19 15:15

Updated : 2025-07-25 20:38


NVD link : CVE-2024-38337

Mitre link : CVE-2024-38337


JSON object : View

Products Affected

ibm

  • linux_on_ibm_z
  • sterling_secure_proxy
  • aix

linux

  • linux_kernel

microsoft

  • windows
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource