Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-38928


IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker to carry out privileged actions and retrieve sensitive information as the domain name is not being limited to only trusted domains. IBM X-Force ID: 210323.


Published

2023-01-04T18:15:08.693

Last Modified

2024-11-21T06:18:13.720

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.4 (MEDIUM)

Weaknesses
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm sterling_b2b_integrator < 6.0.3.7 Yes
Application ibm sterling_b2b_integrator < 6.1.0.6 Yes
Application ibm sterling_b2b_integrator < 6.1.1.2 Yes
Application ibm sterling_b2b_integrator 6.1.2.0 Yes

References