CVE-2022-43920: IBM Sterling B2B Integrator Standard Edition privilege escalation
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 could allow an authenticated user to gain privileges in a different group due to an access control vulnerability in the Sftp server adapter. IBM X-Force ID: 241362.
Other sources
IBM Sterling B2B Integrator Standard Edition could allow an authenticated user to gain privileges in a different group due to an access control vulnerability in the Sftp server adapter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this IBM Sterling B2B Integrator vulnerability?
The vulnerability ID for this IBM Sterling B2B Integrator vulnerability is CVE-2022-43920.
What is the severity of the CVE-2022-43920 vulnerability?
The severity of the CVE-2022-43920 vulnerability is rated as high (8.8).
How can an authenticated user gain privileges in a different group due to this vulnerability?
An authenticated user can gain privileges in a different group due to this vulnerability in the Sftp server adapter of IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1.
Which version of IBM Sterling B2B Integrator is affected by this vulnerability?
IBM Sterling B2B Integrator Standard Edition versions 6.0.0.0 through 6.1.2.1 are affected by this vulnerability.
Where can I find more information about the CVE-2022-43920 vulnerability?
More information about the CVE-2022-43920 vulnerability can be found on the IBM X-Force ID: 241362 page and the IBM support page.