Description
IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.
Published: 2026-09-18
Score: 9.1 Critical
EPSS: < 1% Very Low
KEV: No
Impact: Authentication Bypass
Action: Immediate Patch
AI Analysis

Impact

The vulnerability allows a remote attacker to bypass proper authentication by injecting an unvalidated single sign‑on header. This results in the attacker obtaining a fully authenticated session, effectively granting them the same privileges as a legitimate user. The flaw stems from improper handling of authentication tokens and is classified as CWE-287.

Affected Systems

Affected versions of IBM Sterling File Gateway include 6.2.0.0 through 6.2.0.6_1, 6.2.1.0 through 6.2.1.2, and 6.2.2.0 through 6.2.2.1. Patch releases are available as 6.2.0.6_2, 6.2.1.2_1, and 6.2.2.1_1, with container images for 6.2.1.2_1 and 6.2.2.1_1 hosted on the IBM Entitled Registry.

Risk and Exploitability

The CVSS score of 9.1 indicates a high impact and a high likelihood of exploitation if the vulnerability is not mitigated. Although the EPSS score is not publicly available, the absence of a KEV listing does not reduce the risk; the weakness can be exploited over the network by including a forged SSO header in an HTTP request, a feasible attack vector for remote actors. The vulnerability can lead to complete compromise of confidentiality, integrity, and availability for affected systems.

Generated by OpenCVE AI on September 19, 2026 at 11:19 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now. Product VersionAPARRemediation & FixIBM Sterling File Gateway6.2.0.0 - 6.2.0.6_1, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1IT49865Apply 6.2.0.6_2, 6.2.1.2_1 or 6.2.2.1_1 The IIM versions 6.2.1.2_1 and 6.2.2.1_1 are available on  Fix Central http://www-933.ibm.com/support/fixcentral/swg/selectFixes .  The container versions of 6.2.1.2_1 and 6.2.2.1_1 are available in IBM Entitled Registry * cp.icr.io/cp/ibm-sfg for IBM Sterling File Gateway For 6.2.0.6_2, contact the support


OpenCVE Recommended Actions

  • Apply the latest patched release – IBM Sterling File Gateway 6.2.0.6_2, 6.2.1.2_1, or 6.2.2.1_1 – from the Fix Central repository or the IBM Entitled Registry for container deployments.
  • For 6.2.0.6_2, contact IBM support to obtain the appropriate patch or installation guidance.
  • If an immediate update is not feasible, disable or restrict use of the unvalidated SSO header by enforcing strict header validation or filtering out the header in the application front‑end.

Generated by OpenCVE AI on September 19, 2026 at 11:19 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 19 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 18 Sep 2026 21:30:00 +0000

Type Values Removed Values Added
Description IBM Sterling File Gateway could allow a remote attacker to bypass authentication and obtain a fully authenticated session due to improper authentication via an unvalidated SSO header.
Title IBM Sterling File Gateway is Vulnerable to Authentication Bypass
First Time appeared Ibm
Ibm sterling File Gateway
Weaknesses CWE-287
CPEs cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.6_1:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm sterling File Gateway
References
Metrics cvssV3_1

{'score': 9.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'}


Subscriptions

Ibm Sterling File Gateway
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-19T14:11:40.461Z

Reserved: 2026-08-18T12:47:31.992Z

Link: CVE-2026-75878

cve-icon Vulnrichment

Updated: 2026-09-19T14:07:35.305Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-18T20:17:21.363

Modified: 2026-09-22T19:32:25.730

Link: CVE-2026-75878

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T01:00:11Z

Weaknesses