MEDIUM
The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1 does not enable the HSTS protection mechanism, which makes it easier for remote attackers to obtain sensitive information or modify data by leveraging use of HTTP
Published Oct 6, 2016
6.1
MEDIUMCVSS 3.0
EPSS 0.81%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.