CVE-2017-1347: SQL Injection
IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 126462.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1347?
The severity of CVE-2017-1347 is assessed as high due to its potential impact on the confidentiality and integrity of the back-end database.
How do I fix CVE-2017-1347?
To fix CVE-2017-1347, upgrade IBM Sterling B2B Integrator to the latest version that addresses this SQL injection vulnerability.
What type of vulnerability is CVE-2017-1347?
CVE-2017-1347 is classified as an SQL injection vulnerability, which allows attackers to manipulate the database through crafted SQL queries.
Who is affected by CVE-2017-1347?
CVE-2017-1347 affects users of IBM Sterling B2B Integrator Standard Edition version 5.2.
Can CVE-2017-1347 be exploited remotely?
Yes, CVE-2017-1347 can be exploited remotely by an attacker sending specially-crafted SQL statements to the application.