Known Vulnerabilities for Sterling External Authentication Server by Ibm
Listed below are 10 of the newest known vulnerabilities associated with "Sterling External Authentication Server" by "Ibm".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-32338 json | IBM Sterling Secure Proxy and IBM Sterling External Authentication Server 6.0.3 and 6.1.0 stores user credentials in plain cl... | 5.5 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2023-29261 json | IBM Sterling Secure Proxy 6.0.3 and 6.1.0 could allow a local user with specific information about the system to obtain privi... | 5.5 - MEDIUM | 2023-09-05 | 2023-09-08 |
| CVE-2022-35720 json | IBM Sterling External Authentication Server 6.1.0 and IBM Sterling Secure Proxy 6.0.3 uses weaker than expected cryptographic... | 5.5 - MEDIUM | 2023-02-08 | 2023-11-07 |
| CVE-2022-22349 json | IBM Sterling External Authentication Server 3.4.3.2, 6.0.2.0, and 6.0.3.0 is vulnerable to path traversals, due to not proper... | 4.3 - MEDIUM | 2022-02-24 | 2022-03-02 |
| CVE-2022-22336 json | IBM Sterling External Authentication Server and IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 could allow a remote ... | 7.5 - HIGH | 2022-02-23 | 2022-03-02 |
| CVE-2022-22333 json | IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 and IBM Sterling External Authentication Server are vulnerable a buff... | 6.5 - MEDIUM | 2022-02-23 | 2022-03-02 |
| CVE-2021-29728 json | IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 contains hard-coded credentials, such as a password or cryptogra... | 4.9 - MEDIUM | 2021-08-30 | 2023-02-14 |
| CVE-2021-29723 json | IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could al... | 7.5 - HIGH | 2021-08-30 | 2023-02-14 |
| CVE-2021-29722 json | IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could al... | 7.5 - HIGH | 2021-08-30 | 2023-02-14 |
| CVE-2020-4462 json | IBM Sterling External Authentication Server 6.0.1, 6.0.0, 2.4.3.2, and 2.4.2 and IBM Sterling Secure Proxy 6.0.1, 6.0.0, 3.4.... | 8.2 - HIGH | 2020-07-16 | 2020-07-22 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ibm | Sterling External Authentication Server | 6.0.1.0 | |||
| Application | Ibm | Sterling External Authentication Server | 6.0.0.0 | |||
| Application | Ibm | Sterling External Authentication Server | 2.4.3.2 | |||
| Application | Ibm | Sterling External Authentication Server | 2.4.2.0 | |||
| Application | Ibm | Sterling External Authentication Server | 2.4.1 | |||
| Application | Ibm | Sterling External Authentication Server | 2.4.0 | |||
| Application | Ibm | Sterling External Authentication Server | 2.3.01 | |||
| Application | Ibm | Sterling External Authentication Server | 2.2.0 |