First published: Wed Jul 22 2020(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in further attacks against the system. IBM X-Force ID: 172753.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM B2B Sterling Integrator | <=6.0.0.0 - 6.0.3.1 | |
IBM Sterling B2B Integrator | <=5.2.0.0 - 5.2.6.5_1 | |
IBM B2B Sterling Integrator | >=5.2.0.0<=5.2.6.5 | |
IBM B2B Sterling Integrator | >=6.0.0.0<=6.0.3.1 | |
HPE HP-UX | ||
IBM AIX | ||
IBM i | ||
Linux Kernel | ||
Microsoft Windows | ||
Oracle Solaris SPARC |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4738 is classified as a moderate severity vulnerability.
To fix CVE-2019-4738, apply the latest patches provided by IBM for the affected versions.
CVE-2019-4738 affects IBM Sterling B2B Integrator versions 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1.
CVE-2019-4738 discloses sensitive information to authenticated users via the dashboard UI.
Yes, the information disclosed by CVE-2019-4738 could potentially be used in further attacks against the system.