CVE-2026-7362: Improper Access Control Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway
IBM Sterling B2B Integrator 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 and IBM Sterling File Gateway 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 could allow an authenticated user to obtain sensitive information that should only be available to a privileged user.
Other sources
IBM Sterling File Gateway could allow an authenticated user to obtain sensitive information that should only be available to a privileged user.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Sterling B2B Integratorto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT49322 - Upgrade
Upgrade
IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT49322 - Upgrade
Upgrade
IBM Sterling B2B Integratorto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT49322 - Upgrade
Upgrade
IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT49322
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7362?
The severity of CVE-2026-7362 is classified as medium with a score of 4.3.
What does CVE-2026-7362 impact?
CVE-2026-7362 affects IBM Sterling B2B Integrator and IBM Sterling File Gateway, specifically versions 6.2.1.0 through 6.2.2.0.
How can I mitigate CVE-2026-7362?
To mitigate CVE-2026-7362, it is recommended to restrict access controls for sensitive information to ensure only privileged users can access it.
Who is affected by CVE-2026-7362?
Any authenticated user of the affected versions of IBM Sterling B2B Integrator and IBM Sterling File Gateway may be at risk of exploitation.
What type of vulnerability is CVE-2026-7362?
CVE-2026-7362 is classified as an improper access control vulnerability.