Impact
The vulnerability is an improper access control flaw that may permit a remote attacker to retrieve confidential data from IBM Sterling File Gateway without of confidentiality and could expose business‑critical information governed by the system.
Affected Systems
IBM Sterling File Gateway through 6.2.0.6_1, 6.2.1.0 through 6.2.1.2, and 6.2.2.0 through 6.2.2.1 are affected. The impact spans all referencing the specified image registry.
Risk and Exploitability
The CVSS score of 7.5 marks the flaw as high severity. The EPSS score is less than 1%, indicating a low but non‑zero likelihood of exploitation. KEV catalog. The likely attack vector is remote, as the description states a remote attacker can exploit it. No mitigations other than applying the vendor‑issued fix are described.
OpenCVE Enrichment