IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0 could disclose sensitive host information to authenticated users in responses that could be used in further attacks against the system.
Attack Parameters
Impact Assessment
CVSS Vector v3.1
Weakness Type (CWE)
Vulnerable Products 8
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Ibm Sterling_B2b_Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*
|
6.1.0.0
|
6.1.2.8
|
|
Ibm Sterling_B2b_Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*
|
6.2.0.0
|
6.2.0.5_2
|
|
Ibm Sterling_B2b_Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*
|
6.2.1.0
|
6.2.1.1_2
|
|
Ibm Sterling_B2b_Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.2.0:*:*:*:*:*:*:*
|
— | — |
|
Ibm Sterling_File_Gateway
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*
|
6.1.0.0
|
6.1.2.8
|
|
Ibm Sterling_File_Gateway
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*
|
6.2.0.0
|
6.2.0.5_2
|
|
Ibm Sterling_File_Gateway
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*
|
6.2.1.0
|
6.2.1.1_2
|
|
Ibm Sterling_File_Gateway
cpe:2.3:a:ibm:sterling_file_gateway:6.2.2.0:*:*:*:*:*:*:*
|
— | — |