PT-2018-5822 · Ibm · Ibm Sterling B2B Integrator Standard Edition
Published
2018-07-20
·
Updated
2019-10-09
·
CVE-2017-1544
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
IBM Sterling B2B Integrator Standard Edition versions 2.2.0 through 2.2.6
Description:
The issue allows a local attacker to obtain sensitive information by exploiting cached usernames and passwords in browsers.
Recommendations:
For versions 2.2.0 through 2.2.6, update to a version that does not cache sensitive information in browsers to prevent local attackers from obtaining sensitive data.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Sterling B2B Integrator Standard Edition