First published: Mon Sep 30 2019(Updated: )
IBM Sterling B2B Integrator Standard Edition displays sensitive information in HTTP requests which could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling File Gateway | >=2.2.0.0<=6.0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2019-4280.
The severity of CVE-2019-4280 is medium with a CVSS score of 5.3.
IBM Sterling File Gateway versions 2.2.0.0 through 6.0.1.0 are affected by CVE-2019-4280.
CVE-2019-4280 allows sensitive information to be displayed in HTTP requests, which could be used in further attacks against the system.
Yes, you can find references for CVE-2019-4280 at the following links: - [IBM X-Force ID: 160503](https://exchange.xforce.ibmcloud.com/vulnerabilities/160503) - [IBM Support Page](https://www.ibm.com/support/pages/node/957207)