SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-78415

MEDIUM · CVSS 5.4 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Sterling Secure Proxy versions 6.2.0.0 through 6.2.1.2 are vulnerable to UI spoofing and phishing attacks, enabling remote authenticated attackers to exploit improper handling of user-supplied HTML markup. This could lead to unauthorized access or data compromise through deceptive interfaces. Organizations using these versions should prioritize patching to mitigate potential security risks.

CVE
CVE-2026-78415
Severity
MEDIUM
CVSS
5.4
EPSS
0.18%

Original NVD Description

IBM Sterling Secure Proxy 6.2.0.0 through 6.2.1.2 could allow a remote authenticated attacker to perform UI spoofing and phishing attacks due to improper neutralization of user-supplied HTML markup.