4.3
CVSSv3

CVE-2024-45653

CVSSv4: NA | CVSSv3: 4.3 | CVSSv2: NA | VMScore: 530 | EPSS: 0.0004 | KEV: Not Included
Published: 19/01/2025 Updated: 25/03/2025

Vulnerability Summary

Sensitive IP Address Disclosure in IBM Sterling Connect:Direct Web Services

IBM Sterling Connect:Direct Web Services versions 6.0, 6.1, 6.2, and 6.3 may expose sensitive IP address details to users who are logged in. Authenticated users can see this information in responses, which might be used for other attacks on the system.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm sterling connect direct web services 6.0.0.0

ibm sterling connect direct web services 6.1.0.0

ibm sterling connect direct web services 6.2.0.0

ibm sterling connect direct web services 6.3.0.0

ibm sterling connect direct web services

ibm sterling connect direct web services 6.0.0

ibm sterling connect direct web services 6.1.0

ibm sterling connect direct web services 6.2.0

ibm sterling connect direct web services 6.3.0