CVE-2019-4680: SQL Injection
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.2.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 171733.
Other sources
IBM Sterling B2B Integrator Standard Edition is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4680?
CVE-2019-4680 is classified as a critical vulnerability due to its potential for allowing unauthorized access to the database.
How do I fix CVE-2019-4680?
To remediate CVE-2019-4680, users should apply the latest patches provided by IBM for Sterling B2B Integrator.
Who is affected by CVE-2019-4680?
CVE-2019-4680 affects users of IBM Sterling B2B Integrator versions 5.2.0.0 to 6.0.2.2.
What type of vulnerability is CVE-2019-4680?
CVE-2019-4680 is a SQL injection vulnerability that allows attackers to manipulate backend database queries.
Can CVE-2019-4680 lead to data loss?
Yes, CVE-2019-4680 can enable attackers to delete sensitive information from the database.