# CVE-2025-2827

## Summary

- **CVE ID:** CVE-2025-2827
- **Severity:** MEDIUM
- **CVSS Score:** 4.3 (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)
- **CWE:** CWE-548
- **Published:** Jul 8, 2025
- **Last Modified:** Mar 12, 2026

## Description

IBM Sterling File Gateway 

6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4





could disclose sensitive installation directory information to an authenticated user that could be used in further attacks against the system.

## Affected Products

- IBM — Sterling File Gateway (6.0.0.0)
- IBM — Sterling File Gateway (6.2.0.0)

## References

- [CNA](https://www.ibm.com/support/pages/node/7239094)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.22%
- **EPSS Percentile:** 12.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._