VendorsIBMsterling_b2b_integratorany version
Vulnerabilities

IBM Sterling B2B Integrator any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

130CVEs
CVE-2023-32341
IBM Sterling B2B Integrator denial of service
Published 2024-02-09 · Modified
6.5EPSS 0.006
CVE-2019-4738
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 and 6.0.0.0 through 6.0.3.1 discloses sensitive information to an authenticated user from the dashboard UI which could be used in further attacks against the system. IBM X-Force ID: 172753.
Published 2020-12-10 · Modified
6.5EPSS 0.005
CVE-2023-22876
IBM Sterling B2B Integrator information disclosure
Published 2023-03-15 · Modified
6.5EPSS 0.005
CVE-2022-22337
IBM Sterling B2B Integrator Standard Edition information disclosure
Published 2023-01-04 · Modified
6.5EPSS 0.005
CVE-2022-22371
IBM Sterling B2B Integrator Standard Edition session fixation
Published 2023-01-04 · Modified
6.5EPSS 0.003
CVE-2026-7362
Improper Access Control Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-28 · Analyzed
6.5EPSS 0.003
CVE-2025-2988
IBM Sterling B2B Integrator and IBM Sterling File Gateway information disclosure
Published 2025-08-19 · Analyzed
6.5EPSS 0.003
CVE-2025-14483
IBM Sterling B2B Integrator and IBM Sterling File Gateway Information Disclosure
Published 2026-03-13 · Analyzed
6.5EPSS 0.002
CVE-2021-29764
IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 202268.
Published 2021-10-06 · Modified
6.4EPSS 0.005
CVE-2024-31914
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-06 · Analyzed
6.4EPSS 0.002
CVE-2023-50309
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-23 · Analyzed
6.4EPSS 0.002
CVE-2024-49807
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-31 · Analyzed
6.4EPSS 0.002
CVE-2025-3630
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-07-08 · Analyzed
6.4EPSS 0.002
CVE-2023-25682
IBM Sterling B2B Integrator information disclosure
Published 2023-11-22 · Modified
6.2EPSS 0.002
CVE-2020-4657
IBM Sterling B2B Integrator 5.2.0.0 through 6.0.3.2 Standard Edition is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 186094.
Published 2020-12-16 · Modified
6.1EPSS 0.007
CVE-2021-20561
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199230.
Published 2021-10-07 · Modified
6.1EPSS 0.006
CVE-2022-34330
IBM Sterling B2B Integrator cross-site scripting
Published 2023-01-04 · Modified
6.1EPSS 0.004
CVE-2025-33014
IBM Sterling B2B Integrator and IBM Sterling File Gateway link injection
Published 2025-07-18 · Analyzed
6.1EPSS 0.002
CVE-2019-4063
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 Standard Edition could allow highly sensitive information to be transmitted in plain text. An attacker could obtain this information using man in the middle techniques. IBM X-ForceID: 157008.
Published 2019-03-05 · Modified
5.9EPSS 0.010
CVE-2026-7775
Cross-site Scripting Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-28 · Analyzed
5.5EPSS 0.002
CVE-2024-31913
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-06 · Analyzed
5.5EPSS 0.002
CVE-2025-1349
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-06-18 · Analyzed
5.5EPSS 0.002
CVE-2025-36002
IBM Sterling B2B Integrator information disclosure
Published 2025-10-16 · Modified
5.5EPSS 0.002
CVE-2018-1513
IBM Sterling B2B Integrator Standard Edition 5.2.0 through 5.2.6 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 141551.
Published 2018-07-23 · Modified
5.41 PoCEPSS 0.029
CVE-2018-1563
IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142967.
Published 2018-07-20 · Modified
5.41 PoCEPSS 0.028
CVE-2018-1718
IBM Sterling B2B Integrator Standard Edition 5.2.0.1 - 5.2.6.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 147166.
Published 2018-07-31 · Modified
5.4EPSS 0.012
CVE-2019-4027
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-ForceID: 155905.
Published 2019-03-05 · Modified
5.4EPSS 0.010
CVE-2019-4028
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 155906.
Published 2019-03-05 · Modified
5.4EPSS 0.010
CVE-2019-4029
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-force ID: 155907.
Published 2019-03-05 · Modified
5.4EPSS 0.010
CVE-2021-20562
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_3 and 6.1.0.0 through 6.1.0.2 vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199232.
Published 2021-07-27 · Modified
5.4EPSS 0.009
CVE-2020-4564
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 and IBM Sterling File Gateway 2.2.0.0 through 6.0.3.1 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 183933.
Published 2020-10-20 · Modified
5.4EPSS 0.007
CVE-2021-29760
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated user to download unauthorized files through the dashboard user interface. IBM X-Force ID: 202213.
Published 2021-10-06 · Modified
5.4EPSS 0.006
CVE-2019-4596
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 167879.
Published 2020-02-26 · Modified
5.4EPSS 0.006
CVE-2021-39035
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 213965.
Published 2022-08-16 · Modified
5.4EPSS 0.005
CVE-2021-29836
IBM Sterling B2B Integrator Standard Edition 5.2.0.0. through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 204912.
Published 2021-10-06 · Modified
5.4EPSS 0.005
CVE-2021-29855
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 205684.
Published 2021-10-06 · Modified
5.4EPSS 0.005
CVE-2021-20571
IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199246.
Published 2021-10-07 · Modified
5.4EPSS 0.005
CVE-2021-38928
IBM Sterling B2B Integrator Standard Edition cross-origin resource sharing
Published 2023-01-04 · Modified
5.4EPSS 0.004
CVE-2024-22357
IBM Sterling B2B Integrator cross-site scripting
Published 2024-04-12 · Analyzed
5.4EPSS 0.004
CVE-2022-43578
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2023-02-22 · Modified
5.4EPSS 0.004
← Prev2 / 4Next →