CVE-2026-7769: SQL injection Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.52, 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.52, 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
Other sources
IBM Sterling File Gateway is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Sterling B2B Integrator / IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.0.6Patch IT48302 - Upgrade
Upgrade
IBM Sterling B2B Integrator / IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT48302 - Upgrade
Upgrade
IBM Sterling B2B Integrator / IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT48302
Event History
Frequently Asked Questions
What is the severity of CVE-2026-7769?
The severity of CVE-2026-7769 is rated high with a score of 8.1.
How do I fix CVE-2026-7769?
To mitigate CVE-2026-7769, users should update their IBM Sterling B2B Integrator and IBM Sterling File Gateway to the latest patched version.
What systems are affected by CVE-2026-7769?
CVE-2026-7769 affects IBM Sterling B2B Integrator and IBM Sterling File Gateway versions 6.2.0.0 to 6.2.2.0_1.
What type of vulnerability is CVE-2026-7769?
CVE-2026-7769 is classified as an SQL injection vulnerability.
What impact can CVE-2026-7769 have?
A successful exploit of CVE-2026-7769 could allow a remote attacker to execute arbitrary SQL commands on the database.