CVE-2017-1174: SQL Injection
Published Aug 10, 2017
·Updated
IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 123296.
Affected Software
1 affected component
IBM Sterling B2B Integrator=5.2
Event History
Aug 10, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-1174?
CVE-2017-1174 has a high severity rating due to the potential for unauthorized database access.
2
How do I fix CVE-2017-1174?
To fix CVE-2017-1174, upgrade to a patched version of IBM Sterling B2B Integrator beyond 5.2.
3
What type of vulnerability is CVE-2017-1174?
CVE-2017-1174 is classified as an SQL injection vulnerability.
4
Who can be affected by CVE-2017-1174?
Organizations using IBM Sterling B2B Integrator version 5.2 are vulnerable to CVE-2017-1174.
5
What could an attacker achieve with CVE-2017-1174?
An attacker exploiting CVE-2017-1174 could view, add, modify, or delete data in the database.