CVE-2022-40232: IBM Sterling B2B Integrator Standard Edition improper access control
IBM Sterling B2B Integrator Standard Edition 6.1.0.0 through 6.1.1.1, and 6.1.2.0 could allow an authenticated user to perform actions they should not have access to due to improper permission controls. IBM X-Force ID: 235597.
Other sources
IBM Sterling B2B Integrator Standard Edition could allow an authenticated user to perform actions they should not have access to due to improper permission controls.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2022-40232?
The severity of CVE-2022-40232 is rated as high.
What is the affected software for CVE-2022-40232?
The affected software for CVE-2022-40232 is IBM Sterling B2B Integrator Standard Edition version 6.1.0.0 through 6.1.1.1, and 6.1.2.0.
How can an authenticated user exploit CVE-2022-40232?
An authenticated user can exploit CVE-2022-40232 by performing actions they should not have access to due to improper permission controls.
Is IBM Sterling B2B Integrator the only affected software for CVE-2022-40232?
No, IBM Sterling B2B Integrator is not the only affected software for CVE-2022-40232. IBM AIX, Linux kernel, and Microsoft Windows are not vulnerable to this specific vulnerability.
How do I find more information about CVE-2022-40232?
You can find more information about CVE-2022-40232 on the IBM X-Force ID page and the IBM support page.