PT-2023-13777 · Ibm · Ibm Sterling B2B Integrator Standard Edition

Published

2023-02-17

·

Updated

2023-03-01

·

CVE-2022-40232

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM Sterling B2B Integrator Standard Edition versions 6.1.0.0 through 6.1.1.1 IBM Sterling B2B Integrator Standard Edition version 6.1.2.0
Description The issue allows an authenticated user to perform actions they should not have access to due to improper permission controls.
Recommendations For IBM Sterling B2B Integrator Standard Edition versions 6.1.0.0 through 6.1.1.1, update to a version that includes proper permission controls. For IBM Sterling B2B Integrator Standard Edition version 6.1.2.0, update to a version that includes proper permission controls. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

CVE-2022-40232

Affected Products

Ibm Sterling B2B Integrator Standard Edition