First published: Fri Apr 20 2018(Updated: )
The ActiveMQ admin user interface in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allows remote attackers to bypass authentication by leveraging knowledge of the port number and webapp path. IBM X-Force ID: 92259.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling B2B Integrator | =5.1 | |
IBM Sterling B2B Integrator | =5.2 | |
IBM Sterling File Gateway | =2.1 | |
IBM Sterling File Gateway | =2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2014-0927.
The severity level of CVE-2014-0927 is high (8.1).
IBM Sterling B2B Integrator 5.1, 5.2, Sterling File Gateway 2.1, and 2.2 are affected by CVE-2014-0927.
A remote attacker can bypass authentication by leveraging knowledge of the port number and webapp path.
You can find more information about CVE-2014-0927 at the following links: [IBM Support](http://www-01.ibm.com/support/docview.wss?uid=swg21674739) and [IBM X-Force](https://exchange.xforce.ibmcloud.com/vulnerabilities/92259).