CVE-2019-4598: SQL Injection
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 167881.
Other sources
IBM Sterling B2B Integrator Standard Edition is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4598?
CVE-2019-4598 has a medium severity level allowing for potential unauthorized database access.
How do I fix CVE-2019-4598?
To fix CVE-2019-4598, apply the relevant patches provided by IBM for Sterling B2B Integrator versions 5.2.0.0 through 5.2.6.5.
What versions of IBM Sterling B2B Integrator are affected by CVE-2019-4598?
CVE-2019-4598 affects IBM Sterling B2B Integrator versions 5.2.0.0 through 5.2.6.5.
Can CVE-2019-4598 be exploited remotely?
Yes, CVE-2019-4598 can be exploited remotely by an attacker sending specially-crafted SQL statements.
What type of vulnerability is CVE-2019-4598?
CVE-2019-4598 is classified as an SQL injection vulnerability.