First published: Fri Jun 23 2017(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2 stores potentially sensitive information from HTTP sessions that could be read by a local user. IBM X-Force ID: 126525.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM B2B Sterling Integrator | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1349 is considered a medium severity vulnerability due to the potential exposure of sensitive information.
To mitigate CVE-2017-1349, update IBM Sterling B2B Integrator to the latest version where the vulnerability is addressed.
CVE-2017-1349 exposes potentially sensitive information stored from HTTP sessions.
CVE-2017-1349 affects users of IBM Sterling B2B Integrator Standard Edition version 5.2.
Yes, in CVE-2017-1349, local users may exploit the vulnerability to read sensitive information.