IBM Sterling File Gateway 6.2.0.0 through 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 could allow a remote attacker to obtain sensitive information due to improper access control.

Project Subscriptions

Vendors Products
Sterling File Gateway Subscribe
Advisories

No advisories yet.

Fixes

Solution

ProductVersionAPARRemediation & FixIBM Sterling File Gateway6.2.0.0 - 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1IT49875Apply 6.2.0.6_2, 6.2.1.2_1 or 6.2.2.1_1 The IIM versions 6.2.1.2_1 and 6.2.2.1_1 are available on  Fix Central http://www-933.ibm.com/support/fixcentral/swg/selectFixes .  The container versions of 6.2.1.2_1 and 6.2.2.1_1 are available in IBM Entitled Registry * cp.icr.io/cp/ibm-sfg for IBM Sterling File Gateway For 6.2.0.6_2, contact the support


Workaround

No workaround given by the vendor.

History

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description IBM Sterling File Gateway 6.2.0.0 through 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 could allow a remote attacker to obtain sensitive information due to improper access control.
Title IBM Sterling File Gateway is Vulnerable to Improper Access Control
First Time appeared Ibm
Ibm sterling File Gateway
Weaknesses CWE-284
CPEs cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.6_1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm sterling File Gateway
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-14T20:57:24.950Z

Reserved: 2026-08-07T15:39:48.997Z

Link: CVE-2026-19290

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T21:17:04.767

Modified: 2026-09-14T21:17:04.767

Link: CVE-2026-19290

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses