CVE-2019-4028
- EPSS 0.23%
- Published 05.03.2019 18:29:00
- Last modified 21.11.2024 04:43:03
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials di...
CVE-2019-4029
- EPSS 0.23%
- Published 05.03.2019 18:29:00
- Last modified 21.11.2024 04:43:03
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials di...
CVE-2019-4063
- EPSS 0.13%
- Published 05.03.2019 18:29:00
- Last modified 21.11.2024 04:43:06
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 Standard Edition could allow highly sensitive information to be transmitted in plain text. An attacker could obtain this information using man in the middle techniques. IBM X-ForceID: 157008.
CVE-2018-1800
- EPSS 0.05%
- Published 20.09.2018 15:29:00
- Last modified 21.11.2024 04:00:23
IBM Sterling B2B Integrator Standard Edition 5.2.6.0 and 6.2.6.1 could allow a local user to obtain highly sensitive information during a short time period when installation is occurring. IBM X-Force ID: 149607.
CVE-2018-1718
- EPSS 0.21%
- Published 31.07.2018 13:29:00
- Last modified 21.11.2024 04:00:14
IBM Sterling B2B Integrator Standard Edition 5.2.0.1 - 5.2.6.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cre...
CVE-2018-1513
- EPSS 2.37%
- Published 23.07.2018 13:29:00
- Last modified 21.11.2024 03:59:56
IBM Sterling B2B Integrator Standard Edition 5.2.0 through 5.2.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to c...
CVE-2017-1633
- EPSS 0.26%
- Published 20.07.2018 16:29:00
- Last modified 21.11.2024 03:22:09
IBM Sterling B2B Integrator 5.2 through 5.2.6 could allow an authenticated attacker to obtain sensitive variable name information using specially crafted HTTP requests. IBM X-Force ID: 133180.
CVE-2018-1563
- EPSS 2.11%
- Published 20.07.2018 16:29:00
- Last modified 21.11.2024 04:00:01
IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functional...
CVE-2018-1564
- EPSS 0.05%
- Published 20.07.2018 16:29:00
- Last modified 21.11.2024 04:00:01
IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could allow a local user with administrator privileges to obtain user passwords found in debugging messages. IBM X-Force ID: 142968.
CVE-2018-1679
- EPSS 0.19%
- Published 20.07.2018 16:29:00
- Last modified 21.11.2024 04:00:11
IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could allow an unauthenticated user to obtain sensitive information that could be used in further attacks against the system. IBM X-Force ID: 145180.