Vulnerabilities > IBM > Connect

DATE CVE VULNERABILITY TITLE RISK
2020-12-15 CVE-2020-4747 Improper Authentication vulnerability in IBM Connect:Direct
IBM Connect:Direct for UNIX 6.1.0, 6.0.0, 4.3.0, and 4.2.0 can allow a local or remote user to obtain an authenticated CLI session due to improper authentication methods.
network
low complexity
ibm CWE-287
critical
9.8
2020-08-24 CVE-2020-4587 Out-of-bounds Write vulnerability in IBM Connect:Direct and Sterling Connect:Direct
IBM Sterling Connect:Direct for UNIX 4.2.0, 4.3.0, 6.0.0, and 6.1.0 is vulnerable to a stack based buffer ovreflow, caused by improper bounds checking.
local
low complexity
ibm CWE-787
7.8