CVE-2013-0456: Medium severity ibm b2b sterling integrator vulnerability
Published Jul 3, 2013
·Updated
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to hijack sessions via a modified cookie path.
Affected Software
4 affected components
IBM Sterling B2B Integrator=5.1
IBM Sterling B2B Integrator=5.2
IBM Sterling File Gateway=2.1
IBM Sterling File Gateway=2.2
Event History
Jul 3, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-0456?
CVE-2013-0456 is considered a high severity vulnerability due to its potential for session hijacking.
2
How do I fix CVE-2013-0456?
To fix CVE-2013-0456, it is recommended to apply the latest patches and updates from IBM for affected software versions.
3
Who is affected by CVE-2013-0456?
CVE-2013-0456 affects users of IBM Sterling B2B Integrator versions 5.1 and 5.2, and IBM Sterling File Gateway versions 2.1 and 2.2.
4
What type of attack does CVE-2013-0456 enable?
CVE-2013-0456 enables remote authenticated users to hijack sessions through a modified cookie path.
5
Is CVE-2013-0456 exploited remotely?
Yes, CVE-2013-0456 can be exploited remotely by authenticated users.