CVE-2026-3157: Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway due to information disclosure in mailbox UI
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.52, 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.52, 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 is vulnerable to an information disclosure due to sensitive information being included in the source code comments of a mailbox component.
Other sources
IBM Sterling B2B Integrator and IBM Sterling File Gateway is vulnerable to an information disclosure due to sensitive information being included in the source code comments of a mailbox component.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Sterling B2B Integratorto a version that resolves this vulnerability.Fixed in 6.2.0.6Patch IT48984 - Upgrade
Upgrade
IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.0.6Patch IT48984 - Upgrade
Upgrade
IBM Sterling B2B Integratorto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT48984 - Upgrade
Upgrade
IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT48984 - Upgrade
Upgrade
IBM Sterling B2B Integratorto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT48984 - Upgrade
Upgrade
IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT48984
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3157?
The severity of CVE-2026-3157 is medium with a CVSS score of 4.3.
How do I fix CVE-2026-3157?
To fix CVE-2026-3157, apply the latest security patches from IBM for the affected versions of IBM Sterling B2B Integrator and IBM Sterling File Gateway.
What type of vulnerability is CVE-2026-3157?
CVE-2026-3157 is an information disclosure vulnerability affecting IBM Sterling B2B Integrator and IBM Sterling File Gateway.
Which versions are affected by CVE-2026-3157?
CVE-2026-3157 affects IBM Sterling B2B Integrator versions 6.2.0.0 to 6.2.2.0_1 and IBM Sterling File Gateway versions 6.2.0.0 to 6.2.2.0_1.
What are the possible impacts of CVE-2026-3157?
The possible impacts of CVE-2026-3157 include the unauthorized disclosure of sensitive information via the mailbox UI.