CVE-2019-4029: XSS
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-force ID: 155907.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4029?
CVE-2019-4029 has been rated as a high severity vulnerability due to its potential for credential disclosure.
How do I fix CVE-2019-4029?
To fix CVE-2019-4029, it is recommended to update IBM Sterling B2B Integrator to the latest version that addresses this vulnerability.
What types of attacks can CVE-2019-4029 facilitate?
CVE-2019-4029 can facilitate cross-site scripting attacks that allow attackers to execute arbitrary JavaScript code in a user's browser.
Which versions of IBM Sterling B2B Integrator are affected by CVE-2019-4029?
IBM Sterling B2B Integrator versions 5.2.0.1 through 6.0.0.0 are affected by CVE-2019-4029.
What are the impacts of not addressing CVE-2019-4029?
Failing to address CVE-2019-4029 may lead to unauthorized access to user credentials within a trusted session.