First published: Thu Oct 07 2021(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authneticated attacker to obtain sensitive information from configuration files that could aid in further attacks against the system. IBM X-Force ID: 200656.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling B2B Integrator | >=5.2.0.0<=5.2.6.5_4 | |
IBM Sterling B2B Integrator | >=6.0.0.0<=6.0.0.6 | |
IBM Sterling B2B Integrator | >=6.0.1.0<=6.0.3.4 | |
IBM Sterling B2B Integrator | >=6.1.0.0<=6.1.0.2 | |
<=5.2.0.0 - 5.2.6.5_4 | ||
<=6.0.0.0 - 6.0.0.6, 6.0.1.0 - 6.0.3.4 | ||
<=6.1.0.0 - 6.1.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for IBM Sterling B2B Integrator Standard Edition is CVE-2021-29700.
The severity level of CVE-2021-29700 is medium with a CVSS score of 4.3.
An authenticated attacker can exploit CVE-2021-29700 to obtain sensitive information from configuration files.
Versions 5.2.0.0 through 5.2.6.5_4, 6.0.0.0 through 6.0.0.6, and 6.1.0.0 through 6.1.0.2 of IBM Sterling B2B Integrator Standard Edition are affected by CVE-2021-29700.
You can fix CVE-2021-29700 by applying the patches provided by IBM for the affected versions of IBM Sterling B2B Integrator Standard Edition.