First published: Fri Apr 12 2013(Updated: )
Unspecified vulnerability in the CLA2 server in IBM Gentran Integration Suite 4.3, Sterling Integrator 5.0 and 5.1, and Sterling B2B Integrator 5.2, as used in IBM Sterling File Gateway 1.1 through 2.2 and other products, allows remote attackers to execute arbitrary commands via unknown vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Gentran Integration Suite | =4.3 | |
IBM B2B Sterling Integrator | =5.2 | |
IBM Sterling File Gateway | =1.1 | |
IBM Sterling File Gateway | =2.0 | |
IBM Sterling File Gateway | =2.1 | |
IBM Sterling File Gateway | =2.2 | |
IBM Sterling B2B Integrator | =5.0 | |
IBM Sterling B2B Integrator | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-5937 has a high severity level due to the potential for remote command execution by attackers.
To fix CVE-2012-5937, you should apply the latest patches provided by IBM for affected products.
CVE-2012-5937 affects IBM Gentran Integration Suite 4.3, Sterling Integrator versions 5.0 and 5.1, and Sterling B2B Integrator 5.2 among others.
The potential impacts of CVE-2012-5937 include unauthorized command execution leading to data breach or service disruption.
Yes, CVE-2012-5937 can be exploited remotely by attackers due to its nature of allowing arbitrary command execution.