CVE-2024-41783

Published Jan 19, 2025

Last updated a month ago

Overview

Description
IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system due to improper validation of a specified type of input.
Source
psirt@us.ibm.com
NVD status
Received

Risk scores

CVSS 3.1

Type
Primary
Base score
9.1
Impact score
6
Exploitability score
2.3
Vector string
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Severity
CRITICAL

Social media

Hype score
Not currently trending
  1. 🚨Upozorňujeme na sérii kritických zranitelnosti v IBM Sterling Secure Proxy CVE-2024-41783 CVSS 9.1: Umožní autentizovanému privilegovanému uživateli vložit příkazy (injecty) do základního operačního systému. Zranitelnost je způsobena chybnou validací specifických typů vstupů.…

    @GOVCERT_CZ

    22 Jan 2025

    244 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Warning: Critical vulnerabilities in @IBM Sterling Secure Proxy. CVE-2024-41783 & CVE-2024-38337, CVSS 9.1. They allow an unauthorized attacker to alter/retrieve data or a privileged attacker to inject commands to the underlying operating system. #Patch https://t.co/iqDPN6Yvq

    @CCBalert

    21 Jan 2025

    179 Impressions

    1 Retweet

    0 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  3. IBM Sterling Secure Proxy Faces Multiple Critical Vulnerabilities: A Call for Immediate Action Discover the critical flaws affecting IBM Sterling Secure Proxy. Learn about CVE-2024-41783 and CVE-2024-38337 and their potential impact on data security https://t.co/SRg8U6hC1t

    @the_yellow_fall

    21 Jan 2025

    477 Impressions

    3 Retweets

    15 Likes

    2 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2024-41783 Command Injection Vulnerability in IBM Sterling Secure Proxy https://t.co/LsPWZo7W5C

    @VulmonFeeds

    19 Jan 2025

    66 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. New post from https://t.co/uXvPWJy6tj (CVE-2024-41783 | IBM Sterling Secure Proxy up to 6.2.0.0 os command injection) has been published on https://t.co/Gl7LXBr1tS

    @WolfgangSesin

    19 Jan 2025

    19 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2024-41783 IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating syst… https://t.co/eTC3n9096z

    @CVEnew

    19 Jan 2025

    692 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. [CVE-2024-41783: CRITICAL] IBM Sterling Secure Proxy versions 6.0.0.0 to 6.2.0.0 are vulnerable to command injection by a privileged user due to input validation flaws. Stay informed on cybersecurity risks.#cybersecurity,#vulnerability https://t.co/nUPx1FGWNY https://t.co/o8VTbJ8

    @CveFindCom

    19 Jan 2025

    30 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes