PT-2020-18209 · Ibm · Ibm Sterling B2B Integrator Standard Edition
Published
2020-11-16
·
Updated
2020-11-23
·
CVE-2020-4700
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM Sterling B2B Integrator Standard Edition versions 5.2.0.0 through 5.2.6.5
IBM Sterling B2B Integrator Standard Edition versions 6.0.0.0 through 6.0.3.2
Description
The issue allows an authenticated user belonging to a specific user group to create a user or group with administrative privileges.
Recommendations
For versions 5.2.0.0 through 5.2.6.5, update to a version outside of this range to resolve the issue.
For versions 6.0.0.0 through 6.0.3.2, update to a version outside of this range to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Sterling B2B Integrator Standard Edition