IBM Sterling B2B Integrator
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*
- >= 6.1.0.0, <= 6.1.2.7_2
- >= 6.2.0.0, <= 6.2.0.5_1
- >= 6.2.1.0, <= 6.2.1.1_1
- 6.2.2.0
An access control vulnerability has been identified in IBM Sterling B2B Integrator and IBM Sterling File Gateway, versions 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0. This vulnerability allows remote unauthenticated attackers to view and delete partners within a community, as well as delete the communities themselves.
Exploitation of this vulnerability could lead to unauthorized modification and deletion of community and partner data within the affected applications.
Users can upgrade to IBM Sterling B2B Integrator or IBM Sterling File Gateway versions 6.1.2.8, 6.2.0.5_2, 6.2.1.1_2 or 6.2.2.0_1. The IIM versions of these updates are available on Fix Central, and the container versions are available in the IBM Entitled Registry.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.