CVE-2024-47116: XSS
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Other sources
IBM Sterling B2B Integrator Standard Edition is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47116?
The severity of CVE-2024-47116 is classified as medium due to its potential impact on application functionality and security.
How do I fix CVE-2024-47116?
To fix CVE-2024-47116, you should update IBM Sterling B2B Integrator to the latest patched version beyond 6.1.2.5 or 6.2.0.3.
Who is affected by CVE-2024-47116?
CVE-2024-47116 affects users of IBM Sterling B2B Integrator versions 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3.
What type of vulnerability is CVE-2024-47116?
CVE-2024-47116 is a cross-site scripting (XSS) vulnerability that allows authenticated users to inject arbitrary JavaScript code.
What kind of impact can CVE-2024-47116 have?
The impact of CVE-2024-47116 can lead to altered functionality of the web application and potential unauthorized actions by the attacker.