First published: Wed Oct 06 2021(Updated: )
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated user to download unauthorized files through the dashboard user interface. IBM X-Force ID: 202213.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Sterling B2B Integrator | >=5.2.0.0<=6.1.0.3 | |
<=2.2.0.0 - 5.2.6.5_4 | ||
<=6.0.0.0 - 6.0.0.6, 6.0.1.0 - 6.0.3.4 | ||
<=6.1.0.0 - 6.1.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-29760 is a vulnerability in IBM Sterling B2B Integrator Standard Edition that allows an authenticated user to download unauthorized files through the dashboard user interface.
The severity of CVE-2021-29760 is medium with a CVSS score of 5.4.
CVE-2021-29760 affects IBM Sterling B2B Integrator Standard Edition versions 5.2.0.0 through 6.1.1.0.
An authenticated user can exploit CVE-2021-29760 by downloading unauthorized files through the dashboard user interface.
Yes, a patch is available for CVE-2021-29760. You can find the patch on the IBM Support website.