Known Vulnerabilities for Sterling Secure Proxy by IBM
Listed below are 10 of the newest known vulnerabilities associated with "Sterling Secure Proxy" by "IBM".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-78415 json | IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow a remote authenticated attacker to perform UI spoofing and phis... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2026-75792 json | IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow a remote authenticated attacker to view administrative user int... | Not Provided | 2026-09-14 | 2026-09-15 |
| CVE-2023-32338 json | IBM Sterling Secure Proxy and IBM Sterling External Authentication Server 6.0.3 and 6.1.0 stores user credentials in plain cl... | 5.5 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2022-35720 json | IBM Sterling External Authentication Server 6.1.0 and IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic... | 5.5 - MEDIUM | 2023-02-08 | 2023-11-07 |
| CVE-2022-34362 json | IBM Sterling Secure Proxy 6.0.3 is vulnerable to HTTP header injection, caused by improper validation of input by the HOST he... | 4.6 - MEDIUM | 2023-02-08 | 2023-11-07 |
| CVE-2022-34361 json | IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt hi... | 7.5 - HIGH | 2022-12-06 | 2023-11-07 |
| CVE-2022-22336 json | IBM Sterling External Authentication Server and IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 could allow a remote ... | 7.5 - HIGH | 2022-02-23 | 2022-03-02 |
| CVE-2022-22333 json | IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 and IBM Sterling External Authentication Server are vulnerable a buff... | 6.5 - MEDIUM | 2022-02-23 | 2022-03-02 |
| CVE-2021-29728 json | IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptogra... | 4.9 - MEDIUM | 2021-08-30 | 2023-02-14 |
| CVE-2021-29726 json | IBM Sterling Secure Proxy 6.0.3 and IBM Secure External Authentication Server 6.0.3 does not properly ensure that a certifica... | 5.3 - MEDIUM | 2022-05-17 | 2023-01-24 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Sterling Secure Proxy | 6.0.1.0 | |||
| Application | Ibm | Sterling Secure Proxy | 6.0.0.0 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.3.0 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.2.0 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.1.7 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.1.6 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.1.5 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.1.2 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.1.0 | |||
| Application | Ibm | Sterling Secure Proxy | 3.4.0.0 | |||
| Application | Ibm | Sterling Secure Proxy | 3.3.0.1 | |||
| Application | Ibm | Sterling Secure Proxy | 3.2.0.0 |