Page 22 of 155 results (0.002 seconds)

CVSS: 8.8EPSS: 0%CPEs: 1EXPL: 0

IBM Sterling B2B Integrator Standard Edition 5.2 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 126462. Sterling B2B Integrator Standard Edition versión 5.2 de IBM, es vulnerable a la inyección SQL. Un atacante remoto podría enviar instrucciones SQL especialmente diseñadas, lo que podría permitir al atacante ver, agregar, modificar o eliminar información en la base de datos back-end. • http://www.ibm.com/support/docview.wss?uid=swg22004199 http://www.securityfocus.com/bid/99231 https://exchange.xforce.ibmcloud.com/vulnerabilities/126462 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

IBM Sterling B2B Integrator Standard Edition 5.2 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 115336. IBM Sterling B2B Integrator Standard Edition 5.2 permite que las páginas web se almacenen localmente y que puedan ser leídas por otro usuario del sistema. IBM X-Force ID: 115336. • http://www.ibm.com/support/docview.wss?uid=swg22004272 http://www.securityfocus.com/bid/99228 https://exchange.xforce.ibmcloud.com/vulnerabilities/115336 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information by using unsupported, specially crafted HTTP commands. IBM X-Force ID: 121375. Sterling B2B Integrator Standard Edition versión 5.2 de IBM , podría permitir a un usuario identificado obtener información confidencial mediante el uso de comandos HTTP especialmente creados y no compatibles. ID de IBM X-Force: 121375. • http://www.ibm.com/support/docview.wss?uid=swg22004270 http://www.securityfocus.com/bid/99227 https://exchange.xforce.ibmcloud.com/vulnerabilities/121375 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 0

IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user to obtain sensitive information such as account lists due to improper access control. IBM X-Force ID: 120274. Sterling B2B Integrator Standard Edition versión 5.2 de IBM, podría permitir a un usuario identificado obtener información confidencial, tales como listas de cuentas debido a un control de acceso inapropiado. ID de IBM X-Force: 120274. • http://www.ibm.com/support/docview.wss?uid=swg22004273 http://www.securityfocus.com/bid/99197 https://exchange.xforce.ibmcloud.com/vulnerabilities/120274 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVSS: 5.3EPSS: 0%CPEs: 1EXPL: 0

IBM Sterling B2B Integrator Standard Edition 5.2 could allow an authenticated user with special privileges to view files that they should not have access to. IBM X-Force ID: 120275. Sterling B2B Integrator Standard Edition versión 5.2 de IBM, podría permitir a un usuario autenticado con privilegios especiales visualizar archivos a los que no debería tener acceso. ID de IBM X-Force: 120275. • http://www.ibm.com/support/docview.wss?uid=swg22004273 http://www.securityfocus.com/bid/99198 https://exchange.xforce.ibmcloud.com/vulnerabilities/120275 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •