IBM Sterling B2B Integrator Information Disclosure Vulnerability via Man-in-the-Middle Techniques

Vulnerability

An information disclosure vulnerability has been identified in IBM Sterling B2B Integrator versions 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1. This vulnerability could allow an authenticated user to access sensitive information from the dashboard UI by employing man-in-the-middle techniques.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information displayed on the dashboard UI.

Remediation

Users can upgrade to IBM Sterling B2B Integrator version 6.1.2.6 or 6.2.0.3. The IIM versions of these releases are available on Fix Central, while the container versions can be found in the IBM Entitled Registry.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
4.2
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.