CVE-2026-75878

Summary

IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.

Affected Software

VendorProductVersion RangeStatus
IBMSterling File Gateway6.2.0.0 <= 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1affected

Weaknesses

  • CWE-287: CWE-287 Improper Authentication

References