VendorsIBMsterling_b2b_integratorany version
Vulnerabilities

IBM Sterling B2B Integrator any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

130CVEs
CVE-2022-43579
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2023-02-17 · Modified
5.4EPSS 0.004
CVE-2022-22352
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2023-01-04 · Modified
5.4EPSS 0.004
CVE-2023-50307
IBM Sterling B2B Integrator cross-site scripting
Published 2024-04-12 · Analyzed
5.4EPSS 0.003
CVE-2023-45186
IBM Sterling B2B Integrator cross-site scripting
Published 2024-04-12 · Analyzed
5.4EPSS 0.003
CVE-2021-20553
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2024-12-18 · Analyzed
5.4EPSS 0.003
CVE-2023-42014
IBM Sterling B2B Integrator Standard Edition cross-site scripting
Published 2024-06-27 · Modified
5.4EPSS 0.003
CVE-2025-36431
XSS Security Vulnerability in response header affects IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2025-36298
Security Vulnerability in Ebics server affects IBM Sterling B2B Integrator and IBM Sterling File Gateway
Published 2026-07-30 · Analyzed
5.4EPSS 0.002
CVE-2023-32340
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-23 · Analyzed
5.4EPSS 0.002
CVE-2024-47116
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-31 · Analyzed
5.4EPSS 0.002
CVE-2024-40696
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-31 · Analyzed
5.4EPSS 0.002
CVE-2024-47103
IBM Sterling B2B Integrator cross-site scripting
Published 2025-01-31 · Analyzed
5.4EPSS 0.002
CVE-2025-14504
IBM Sterling B2B Integrator and IBM Sterling File Gateway Cross-Site Scripting
Published 2026-03-13 · Analyzed
5.4EPSS 0.002
CVE-2026-0835
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.1.0.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_1, 6.2.1.0 through 6.2.1.1_1, and 6.2.2.0 are vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
Published 2026-03-13 · Analyzed
5.4EPSS 0.002
CVE-2023-40693
IBM Sterling B2B Integrator and IBM Sterling File Gateway Cross-Site Scripting
Published 2026-03-13 · Analyzed
5.4EPSS 0.002
CVE-2024-54183
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-06-18 · Analyzed
5.4EPSS 0.002
CVE-2025-2793
IBM Sterling B2B Integrator and IBM Sterling File Gateway cross-site scripting
Published 2025-07-08 · Analyzed
5.4EPSS 0.002
CVE-2025-36135
IBM Sterling B2B Integrator and IBM Sterling File Gateway are Vulnerable to Cross-Site Scripting
Published 2025-11-07 · Analyzed
5.4EPSS 0.002
CVE-2018-1679
IBM Sterling B2B Integrator Standard Edition 5.2 through 5.2.6 could allow an unauthenticated user to obtain sensitive information that could be used in further attacks against the system. IBM X-Force ID: 145180.
Published 2018-07-20 · Modified
5.3EPSS 0.018
CVE-2020-4761
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5_2, 6.0.0.0 through 6.0.3.2, and 6.1.0.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 188895.
Published 2021-01-05 · Modified
5.3EPSS 0.013
CVE-2026-3482
IBM Sterling B2B Integrator and IBM Sterling File Gateway Authorization Bypass
Published 2026-07-22 · Analyzed
5.3EPSS 0.005
CVE-2024-27263
IBM Sterling B2B Integrator information disclosure
Published 2025-01-28 · Analyzed
5.3EPSS 0.003
CVE-2025-36112
IBM Sterling B2B Integrator and IBM Sterling File Gateway information disclosure
Published 2025-11-24 · Analyzed
5.3EPSS 0.002
CVE-2018-1800
IBM Sterling B2B Integrator Standard Edition 5.2.6.0 and 6.2.6.1 could allow a local user to obtain highly sensitive information during a short time period when installation is occurring. IBM X-Force ID: 149607.
Published 2018-09-20 · Modified
5.1EPSS 0.003
CVE-2026-1918
IBM Sterling B2B Integrator and IBM Sterling File Gateway store sensitive information in a log file
Published 2026-07-28 · Analyzed
4.9EPSS 0.004
CVE-2025-36348
The Dashboard of IBM Sterling B2B Integrator and IBM Sterling File Gateway is Vulnerable to Information Disclosure
Published 2026-02-17 · Analyzed
4.9EPSS 0.003
CVE-2025-2667
IBM Sterling B2B Integrator information disclosure
Published 2025-09-04 · Analyzed
4.9EPSS 0.003
CVE-2020-4705
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 187190.
Published 2020-11-16 · Modified
4.8EPSS 0.006
CVE-2024-56338
IBM Sterling B2B Integrator cross-site scripting
Published 2025-03-11 · Analyzed
4.8EPSS 0.003
CVE-2025-2694
IBM Sterling B2B Integrator cross-site scripting
Published 2025-09-04 · Analyzed
4.8EPSS 0.002
CVE-2017-1633
IBM Sterling B2B Integrator 5.2 through 5.2.6 could allow an authenticated attacker to obtain sensitive variable name information using specially crafted HTTP requests. IBM X-Force ID: 133180.
Published 2018-07-20 · Modified
4.3EPSS 0.017
CVE-2019-4377
IBM Sterling B2B Integrator 6.0.0.0 and 6.0.0.1 reveals sensitive information from a stack trace that could be used in further attacks against the system. IBM X-Force ID: 162803.
Published 2019-06-25 · Modified
4.3EPSS 0.013
CVE-2021-20372
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow a remote authenticated user to cause a denial of another user's service due to insufficient permission checking. IBM X-Force ID: 195518.
Published 2021-10-07 · Modified
4.3EPSS 0.012
CVE-2021-29700
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authneticated attacker to obtain sensitive information from configuration files that could aid in further attacks against the system. IBM X-Force ID: 200656.
Published 2021-10-07 · Modified
4.3EPSS 0.009
CVE-2020-4312
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 trough 6.0.3.1 could allow an authenticated user to obtain sensitive information from a cached web page. IBM X-Force ID: 177089.
Published 2020-05-13 · Modified
4.3EPSS 0.008
CVE-2021-20376
IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 could allow an authenticated attacker to enumerate usernames due to there being an observable discrepancy in returned messages. IBM X-Force ID: 195568.
Published 2021-10-07 · Modified
4.3EPSS 0.007
CVE-2021-29761
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated user to obtain sensitive information from the dashboard that they should not have access to. IBM X-Force ID: 202265.
Published 2021-10-06 · Modified
4.3EPSS 0.007
CVE-2020-4646
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5, 6.0.0.0 through 6.0.3.3, and 6.1.0.0 through 6.1.0.2 could allow an authenticated user to view pages they shoiuld not have access to due to improper authorization control.
Published 2021-05-19 · Modified
4.3EPSS 0.007
CVE-2021-38954
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5 and 6.1.0.0 through 6.1.1.0 could disclose sensitive version information that could aid in future attacks against the system. IBM X-Force ID: 211414.
Published 2022-06-30 · Modified
4.3EPSS 0.007
CVE-2021-29758
IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated user to perform actions that they should not be able to access due to improper access controls. IBM X-Force ID: 202169.
Published 2021-10-06 · Modified
4.3EPSS 0.006
← Prev3 / 4Next →