IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.
CVE ID: CVE-2024-38337
CVSS Base Severity: CRITICAL
CVSS Base Score: 9.1
Vendor: IBM
Product: Sterling Secure Proxy
EPSS Score: 0.09% (probability of being exploited)
EPSS Percentile: 40.92% (scored less or equal to compared to others)
EPSS Date: 2025-02-17 (when was this score calculated)