cbcvebase.
CVE-2021-20376
published 2021-10-07

CVE-2021-20376: IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow an authenticated attacker to enumerate usernames due to there being an observable discrepancy in…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow an authenticated attacker to enumerate usernames due to there being an observable discrepancy in returned messages. IBM X-Force ID: 195568.

Affected

9 ranges
VendorProductVersion rangeFixed in
ibmsterling_b2b_integrator2.2.0.0 – 5.2.6.5_3
ibmsterling_b2b_integrator6.0.0.0 – 6.0.3.4
ibmsterling_b2b_integrator6.1.0.0 – 6.1.0.1
ibmsterling_file_gateway
ibmsterling_file_gateway
ibmsterling_file_gateway
ibmsterling_file_gateway
ibmsterling_file_gateway
ibmsterling_file_gateway