CVE-2020-4475: Medium severity ibm b2b sterling integrator vulnerability
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Other sources
IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-4475?
CVE-2020-4475 is classified as a moderate vulnerability as it can lead to sensitive information disclosure.
How do I fix CVE-2020-4475?
To fix CVE-2020-4475, you should update IBM Sterling B2B Integrator to version 6.0.3.2 or 5.2.6.5 or later.
What software versions are affected by CVE-2020-4475?
CVE-2020-4475 affects IBM Sterling B2B Integrator versions 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.2.
What type of information could be exposed by CVE-2020-4475?
CVE-2020-4475 could allow a remote attacker to obtain sensitive information from detailed technical error messages.
Can CVE-2020-4475 lead to further attacks?
Yes, the information obtained through CVE-2020-4475 can be used in subsequent attacks against the system.