📦 Sterling File Gateway

by Ibm

🔍 What is Sterling File Gateway?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-20489

HIGH CVSS 8.8 Oct 7, 2021

IBM Sterling File Gateway versions 2.2.0.0 through 6.1.1.0 contain a cross-site request forgery (CSRF) vulnerability that allows attackers to trick authenticated users into performing unauthorized act...

CVE-2025-36348

MEDIUM CVSS 4.9 Feb 17, 2026

This vulnerability in IBM Sterling B2B Integrator and File Gateway exposes sensitive technical error messages to remote privileged attackers. Attackers can gain detailed system information that could ...

CVE-2025-36112

MEDIUM CVSS 5.3 Nov 24, 2025

This vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway allows unauthorized users to access sensitive server IP configuration information. Affected organizations using vulnerable v...

CVE-2025-36135

MEDIUM CVSS 5.4 Nov 7, 2025

This CVE describes a cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway. An authenticated attacker can inject malicious JavaScript into the web interface...

CVE-2025-2694

MEDIUM CVSS 4.8 Sep 4, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and File Gateway allows privileged users to inject malicious JavaScript into the web interface. The injected code can execu...

CVE-2025-33008

MEDIUM CVSS 5.4 Aug 19, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and File Gateway allows authenticated attackers to inject malicious JavaScript into the web interface. This could lead to s...

CVE-2025-2827

MEDIUM CVSS 4.3 Jul 8, 2025

This vulnerability in IBM Sterling File Gateway allows authenticated users to access sensitive installation directory information. Attackers could use this information to plan further attacks against ...

CVE-2025-1348

MEDIUM CVSS 4.0 Jun 18, 2025

This vulnerability allows a local user to access sensitive information from another user's web browser cache due to improper caching policies in IBM Sterling products. It affects IBM Sterling B2B Inte...

CVE-2024-54183

MEDIUM CVSS 5.4 Jun 18, 2025

This CVE describes a stored cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway. An authenticated attacker can inject malicious JavaScript into the web in...

CVE-2024-22316

MEDIUM CVSS 4.3 Jan 27, 2025

CVE-2024-22316 is an improper access control vulnerability in IBM Sterling File Gateway that allows authenticated users to perform unauthorized actions on other users' data. This affects versions 6.0....

CVE-2023-47159

MEDIUM CVSS 4.3 Jan 27, 2025

IBM Sterling File Gateway versions 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 contain an information disclosure vulnerability where authenticated users can enumerate valid usernames by observ...

CVE-2025-36134

LOW CVSS 3.7 Nov 25, 2025

This vulnerability allows attackers to potentially steal sensitive session cookies in IBM Sterling B2B Integrator and Sterling File Gateway products. Attackers could perform cross-site request forgery...