IBM Sterling B2B Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*
- >= 6.0.0.0, <= 6.1.2.5
- >= 6.2.0.0, <= 6.2.0.2
A remote code execution vulnerability has been identified in IBM Sterling B2B Integrator Standard Edition versions 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2. This vulnerability allows an attacker on the local network to execute arbitrary code on the system, due to the deserialization of untrusted data.
Exploitation of this vulnerability allows for arbitrary code execution on the affected system.
Users can upgrade to IBM Sterling B2B Integrator version 6.1.2.5_1 or 6.2.0.3. The IIM versions of these releases are available on Fix Central, while the container versions can be found in the IBM Entitled Registry.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.