Show filters
62 Total Results
Displaying 1-10 of 62
Sort by:
Attacker Value
Unknown

CVE-2018-1720

Disclosure Date: April 25, 2019 (last updated November 27, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2.0.1, 5.2.6.3_6, 6.0.0.0, and 6.0.0.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 147294.
0
Attacker Value
Unknown

CVE-2014-0927

Disclosure Date: April 20, 2018 (last updated November 26, 2024)
The ActiveMQ admin user interface in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allows remote attackers to bypass authentication by leveraging knowledge of the port number and webapp path. IBM X-Force ID: 92259.
0
Attacker Value
Unknown

CVE-2014-0912

Disclosure Date: April 20, 2018 (last updated November 26, 2024)
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote attackers to obtain sensitive product information via vectors related to an error page. IBM X-Force ID: 92072.
0
Attacker Value
Unknown

CVE-2017-1481

Disclosure Date: December 07, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2 allows a user to view sensitive information that belongs to another user. IBM X-Force ID: 128619.
0
Attacker Value
Unknown

CVE-2017-1482

Disclosure Date: December 07, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 128620.
0
Attacker Value
Unknown

CVE-2017-1192

Disclosure Date: August 10, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator 5.2 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose highly sensitive information or consume memory resources. IBM X-Force ID: 123663.
0
Attacker Value
Unknown

CVE-2017-1174

Disclosure Date: August 10, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 123296.
0
Attacker Value
Unknown

CVE-2015-0194

Disclosure Date: August 02, 2017 (last updated November 26, 2024)
XML External Entity (XXE) vulnerability in IBM Sterling B2B Integrator 5.1 and 5.2 and IBM Sterling File Gateway 2.1 and 2.2 allows remote attackers to read arbitrary files via a crafted XML data.
0
Attacker Value
Unknown

CVE-2017-1496

Disclosure Date: July 31, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 128694.
0
Attacker Value
Unknown

CVE-2017-1347

Disclosure Date: June 23, 2017 (last updated November 26, 2024)
IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 126462.
0