CVE-2024-38341

IBM Sterling Secure Proxy 6.0.0.0 through 6.0.3.1, 6.1.0.0 through 6.1.0.0, and 6.2.0.0 through 6.2.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
References
Link Resource
https://www.ibm.com/support/pages/node/7234888 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*

History

09 Jun 2025, 18:57

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:sterling_secure_proxy:*:*:*:*:*:*:*:*
First Time Ibm
Ibm sterling Secure Proxy
CWE CWE-326
References () https://www.ibm.com/support/pages/node/7234888 - () https://www.ibm.com/support/pages/node/7234888 - Vendor Advisory
Summary
  • (es) IBM Sterling Secure Proxy 6.0.0.0 a 6.0.3.1, 6.1.0.0 a 6.1.0.0 y 6.2.0.0 a 6.2.0.1 utilizan algoritmos criptográficos más débiles de lo esperado que podrían permitir a un atacante descifrar información altamente confidencial.

28 May 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-28 16:15

Updated : 2025-06-09 18:57


NVD link : CVE-2024-38341

Mitre link : CVE-2024-38341

CVE.ORG link : CVE-2024-38341


JSON object : View

Products Affected

ibm

  • sterling_secure_proxy
CWE
CWE-328

Use of Weak Hash

CWE-326

Inadequate Encryption Strength