IBM Sterling B2B Integrator Standard Edition improper access control
CVE-2022-40232
6.3MEDIUM
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 17 February 2023
Summary
IBM Sterling B2B Integrator Standard Edition 6.1.0.0 through 6.1.1.1, and 6.1.2.0 could allow an authenticated user to perform actions they should not have access to due to improper permission controls. IBM X-Force ID: 235597.
Affected Version(s)
Sterling B2B Integrator Standard Edition 6.1.0.0 < 6.1.1.1
Sterling B2B Integrator Standard Edition 6.1.2.0
References
CVSS V3.1
Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved