CVE-2025-33008
- EPSS 0.02%
- Veröffentlicht 19.08.2025 19:03:36
- Zuletzt bearbeitet 18.09.2025 15:34:07
IBM Sterling B2B Integrator 6.2.1.0 and IBM Sterling File Gateway 6.2.1.0 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality...
CVE-2025-33014
- EPSS 0.03%
- Veröffentlicht 18.07.2025 18:51:05
- Zuletzt bearbeitet 02.08.2025 01:42:27
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.4 uses a web link with untrusted references to an external site. A remote attacker could exploit this vulnerability to expose sensitive inform...
CVE-2025-2793
- EPSS 0.02%
- Veröffentlicht 08.07.2025 15:15:27
- Zuletzt bearbeitet 02.08.2025 01:23:17
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user t...
CVE-2025-3630
- EPSS 0.02%
- Veröffentlicht 08.07.2025 14:51:24
- Zuletzt bearbeitet 02.08.2025 01:22:01
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.6, 6.2.0.0 through 6.2.0.4, IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6, and 6.2.0.0 through 6.2.0.4 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated user...
CVE-2025-1349
- EPSS 0.02%
- Veröffentlicht 18.06.2025 16:20:51
- Zuletzt bearbeitet 25.07.2025 17:58:03
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI...
- EPSS 0.01%
- Veröffentlicht 18.06.2025 16:19:48
- Zuletzt bearbeitet 25.07.2025 17:57:57
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 could allow a local user to obtain sensitive information from a user’s web browser cache due to not using a suitable caching policy.
CVE-2024-54172
- EPSS 0.01%
- Veröffentlicht 18.06.2025 16:13:10
- Zuletzt bearbeitet 25.07.2025 17:57:51
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a u...
CVE-2024-54183
- EPSS 0.02%
- Veröffentlicht 18.06.2025 15:08:50
- Zuletzt bearbeitet 25.07.2025 17:57:41
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus...
CVE-2024-56338
- EPSS 0.06%
- Veröffentlicht 11.03.2025 16:27:38
- Zuletzt bearbeitet 12.05.2025 21:02:40
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the int...
CVE-2024-52905
- EPSS 0.09%
- Veröffentlicht 10.03.2025 16:15:12
- Zuletzt bearbeitet 25.07.2025 18:11:38
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 could disclose sensitive database information to a privileged user.