First published: Tue Jul 31 2018(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2.0.1 - 5.2.6.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 147166.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM B2B Sterling Integrator | >=5.2.0.1<=5.2.6.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-1718 is classified as a high severity vulnerability due to its potential impact on user credential security.
To fix CVE-2018-1718, upgrade to a version of IBM Sterling B2B Integrator that is higher than 5.2.6.3.
CVE-2018-1718 is a cross-site scripting (XSS) vulnerability.
CVE-2018-1718 affects users of IBM Sterling B2B Integrator versions from 5.2.0.1 to 5.2.6.3.
Exploitation of CVE-2018-1718 could lead to the disclosure of user credentials within a trusted session.