CVE-2018-1564: Infoleak
Published Jul 20, 2018
·Updated
IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could allow a local user with administrator privileges to obtain user passwords found in debugging messages. IBM X-Force ID: 142968.
Affected Software
1 affected component
IBM Sterling B2B Integrator>=5.2.0.1<=5.2.6.3
Remediation
Patch Available
Event History
Jul 20, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-1564?
CVE-2018-1564 is considered a moderate severity vulnerability.
2
How can I mitigate CVE-2018-1564?
Mitigation for CVE-2018-1564 involves disabling debugging features or restricting access to sensitive logs.
3
Who is affected by CVE-2018-1564?
CVE-2018-1564 affects local users with administrator privileges on IBM Sterling B2B Integrator versions 5.2 to 5.2.6.
4
What type of vulnerability is CVE-2018-1564?
CVE-2018-1564 is a local privilege escalation vulnerability related to sensitive information exposure.
5
What versions of IBM Sterling B2B Integrator are impacted by CVE-2018-1564?
CVE-2018-1564 impacts IBM Sterling B2B Integrator Standard Edition versions from 5.2.0.1 to 5.2.6.3.