CVE-2024-38337

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.
References
Link Resource
https://www.ibm.com/support/pages/node/7179166 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.2.0.0:*:*:*:*:*:*:*
OR cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

25 Jul 2025, 20:38

Type Values Removed Values Added
First Time Ibm linux On Ibm Z
Ibm aix
Linux
Microsoft windows
Ibm sterling Secure Proxy
Linux linux Kernel
Microsoft
Ibm
References () https://www.ibm.com/support/pages/node/7179166 - () https://www.ibm.com/support/pages/node/7179166 - Vendor Advisory
Summary
  • (es) IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0 y 6.2.0.0 podrían permitir que un atacante no autorizado recupere o altere contenidos de información confidencial debido a asignaciones de permisos incorrectas.
CPE cpe:2.3:a:ibm:sterling_secure_proxy:6.1.0.0:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:6.2.0.0:*:*:*:*:*:*:*

19 Jan 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-19 15:15

Updated : 2026-06-17 07:39


NVD link : CVE-2024-38337

Mitre link : CVE-2024-38337

CVE.ORG link : CVE-2024-38337


JSON object : View

Products Affected

microsoft

  • windows

ibm

  • aix
  • sterling_secure_proxy
  • linux_on_ibm_z

linux

  • linux_kernel
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource