IBM Sterling Secure Proxy 3.2.0 and 3.3.01 before 3.3.01.23 Interim Fix 1, 3.4.0 before 3.4.0.6 Interim Fix 1, and 3.4.1 before 3.4.1.7 allows remote authenticated users to obtain sensitive Java stack-trace information by providing invalid input data.
2013-05-10T11:42:29.940
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.0 (MEDIUM)
AV:N/AC:L/Au:S/C:P/I:N/A:N
8.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | sterling_secure_proxy | 3.2.0.0 | Yes |
Application | ibm | sterling_secure_proxy | 3.3.0.1 | Yes |
Application | ibm | sterling_secure_proxy | 3.4.0.0 | Yes |
Application | ibm | sterling_secure_proxy | 3.4.1.0 | Yes |
Application | ibm | sterling_secure_proxy | 3.4.1.2 | Yes |
Application | ibm | sterling_secure_proxy | 3.4.1.5 | Yes |
Application | ibm | sterling_secure_proxy | 3.4.1.6 | Yes |