PT-2024-13029 · Ibm · Ibm Sterling B2B Integrator Standard Edition

Published

2024-06-27

·

Updated

2024-08-06

·

CVE-2023-42011

CVSS v3.1

5.4

Medium

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions IBM Sterling B2B Integrator Standard Edition versions 6.1 and 6.2
Description The issue arises from the software not restricting or incorrectly restricting frame objects or UI layers that belong to another application or domain. This can lead to user confusion about which interface the user is interacting with.
Recommendations For IBM Sterling B2B Integrator Standard Edition versions 6.1 and 6.2, consider implementing proper restrictions on frame objects or UI layers to prevent confusion about the interface being interacted with. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Clickjacking

Weakness Enumeration

Related Identifiers

CVE-2023-42011

Affected Products

Ibm Sterling B2B Integrator Standard Edition