PT-2025-42479 · Ibm · Ibm Sterling B2B Integrator+1

Publicado

2025-10-16

·

Atualizado

2025-10-25

·

CVE-2025-36002

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Sterling B2B Integrator versions 6.2.0.0 through 6.2.0.5 and 6.2.1.0 IBM Sterling File Gateway versions 6.2.0.0 through 6.2.0.5 and 6.2.1.0
Description The software stores user credentials in configuration files that are accessible to local users. This could allow unauthorized access to sensitive information.
Recommendations Apply appropriate file system permissions to restrict access to the configuration files containing user credentials for IBM Sterling B2B Integrator version 6.2.0.0 through 6.2.0.5. Apply appropriate file system permissions to restrict access to the configuration files containing user credentials for IBM Sterling B2B Integrator version 6.2.1.0. Apply appropriate file system permissions to restrict access to the configuration files containing user credentials for IBM Sterling File Gateway version 6.2.0.0 through 6.2.0.5. Apply appropriate file system permissions to restrict access to the configuration files containing user credentials for IBM Sterling File Gateway version 6.2.1.0.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-36002

Produtos afetados

Ibm Sterling B2B Integrator
Ibm Sterling File Gateway