CVE-2026-1264: IBM Sterling B2B Integrator and IBM Sterling File Gateway Improper Access Controls
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.72, 6.2.0.0 through 6.2.0.51, 6.2.1.0 through 6.2.1.11, and 6.2.2.0 allows a remote unauthenticated attacker to view and delete the partners of a community and to delete the communities.
Other sources
IBM Sterling B2B Integrator and IBM Sterling File Gateway allows a remote unauthenticated attacker to view and delete the partners of a community and to delete the communities.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1264?
CVE-2026-1264 has been classified with a high severity due to improper access controls that allow unauthorized access.
How do I fix CVE-2026-1264?
To fix CVE-2026-1264, upgrade to the latest versions of IBM Sterling B2B Integrator and IBM Sterling File Gateway as per IBM's security guidelines.
Which versions are affected by CVE-2026-1264?
CVE-2026-1264 affects IBM Sterling B2B Integrator and IBM Sterling File Gateway versions from 6.1.0.0 to 6.2.2.0.
Can CVE-2026-1264 be exploited remotely?
Yes, CVE-2026-1264 can be exploited remotely by unauthenticated attackers.
What kind of access can an attacker gain from CVE-2026-1264?
An attacker exploiting CVE-2026-1264 can view and delete critical data within the affected systems.