5.4
CVSSv3

CVE-2021-20562

Published: 27/07/2021 Updated: 28/11/2021
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 up to and including 5.2.6.5_3 and 6.1.0.0 up to and including 6.1.0.2 vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199232.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm sterling b2b integrator

Exploits

IBM Sterling B2B Integrator suffers from a cross site scripting vulnerability Versions affected include 5200 through 5265_3, 6000 through 6034, and 6100 through 6102 ...

Mailing Lists

SEC Consult Vulnerability Lab Security Advisory < 20211104-0 > ======================================================================= title: Reflected cross-site scripting vulnerability product: IBM Sterling B2B Integrator vulnerable version: 5200 - 5265_3 6000 - 6034 ...