First published: Fri Jul 20 2018(Updated: )
IBM Sterling B2B Integrator 5.2 through 5.2.6 could allow an authenticated attacker to obtain sensitive variable name information using specially crafted HTTP requests. IBM X-Force ID: 133180.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM B2B Sterling Integrator | >=5.2.0.1<=5.2.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-1633 is classified as medium due to its potential impact on sensitive information exposure.
To fix CVE-2017-1633, update IBM Sterling B2B Integrator to version 5.2.6.4 or later.
IBM Sterling B2B Integrator versions 5.2 through 5.2.6 are affected by CVE-2017-1633.
CVE-2017-1633 can be exploited through specially crafted HTTP requests by an authenticated attacker.
CVE-2017-1633 can expose sensitive variable name information to an authenticated attacker.