Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-36002


IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5, and 6.2.1.0 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5, and 6.2.1.0 stores user credentials in configuration files which can be read by a local user.


Published

2025-10-16T15:15:33.060

Last Modified

2025-10-25T02:15:39.370

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-260
  • Type: Secondary
    CWE-256

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm sterling_b2b_integrator < 6.2.0.5_1 Yes
Application ibm sterling_b2b_integrator 6.2.1.0 Yes
Application ibm sterling_file_gateway < 6.2.0.5_1 Yes
Application ibm sterling_file_gateway 6.2.1.0 Yes
Operating System ibm aix - No
Operating System linux linux_kernel - No
Operating System microsoft windows - No

References