CVE-2020-4671
- EPSS 0.24%
- Veröffentlicht 16.11.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:33:06
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 stores potentially sensitive information in log files that could be read by an authenticatedl user. IBM X-Force ID: 186284.
CVE-2020-4692
- EPSS 0.21%
- Veröffentlicht 16.11.2020 17:15:13
- Zuletzt bearbeitet 21.11.2024 05:33:08
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 could allow an authenticated user to obtain sensitive information from the Dashboard UI. IBM X-Force ID: 186780.
CVE-2020-4564
- EPSS 0.26%
- Veröffentlicht 20.10.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:32:54
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 and IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus a...
CVE-2019-4680
- EPSS 0.46%
- Veröffentlicht 20.10.2020 15:15:12
- Zuletzt bearbeitet 21.11.2024 04:43:58
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-...
CVE-2020-4312
- EPSS 0.16%
- Veröffentlicht 13.05.2020 13:15:14
- Zuletzt bearbeitet 21.11.2024 05:32:34
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 trough 6.0.3.1 could allow an authenticated user to obtain sensitive information from a cached web page. IBM X-Force ID: 177089.
CVE-2019-4596
- EPSS 0.24%
- Veröffentlicht 26.02.2020 16:15:19
- Zuletzt bearbeitet 21.11.2024 04:43:48
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading ...
CVE-2019-4597
- EPSS 0.3%
- Veröffentlicht 26.02.2020 16:15:19
- Zuletzt bearbeitet 21.11.2024 04:43:48
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-...
CVE-2019-4598
- EPSS 0.3%
- Veröffentlicht 26.02.2020 16:15:19
- Zuletzt bearbeitet 21.11.2024 04:43:49
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-...
CVE-2019-4726
- EPSS 0.13%
- Veröffentlicht 26.02.2020 16:15:19
- Zuletzt bearbeitet 21.11.2024 04:44:03
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ...
CVE-2019-4595
- EPSS 0.19%
- Veröffentlicht 24.02.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 04:43:47
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could explo...