First published: Tue Jul 17 2018(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could allow a local user with administrator privileges to obtain user passwords found in debugging messages. IBM X-Force ID: 142968.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM B2B Sterling Integrator | >=5.2.0.1<=5.2.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1564 is considered a moderate severity vulnerability.
Mitigation for CVE-2018-1564 involves disabling debugging features or restricting access to sensitive logs.
CVE-2018-1564 affects local users with administrator privileges on IBM Sterling B2B Integrator versions 5.2 to 5.2.6.
CVE-2018-1564 is a local privilege escalation vulnerability related to sensitive information exposure.
CVE-2018-1564 impacts IBM Sterling B2B Integrator Standard Edition versions from 5.2.0.1 to 5.2.6.3.