CVE Vulnerabilities

CVE-2020-4646

Published: May 19, 2021 | Modified: Nov 21, 2024
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 5.2.6.5, 6.0.0.0 through 6.0.3.3, and 6.1.0.0 through 6.1.0.2 could allow an authenticated user to view pages they shoiuld not have access to due to improper authorization control.

Affected Software

NameVendorStart VersionEnd Version
Sterling_b2b_integratorIbm5.2.0.0 (including)5.2.6.5 (including)
Sterling_b2b_integratorIbm6.0.0.0 (including)6.0.3.3 (including)
Sterling_b2b_integratorIbm6.1.0.0 (including)6.1.0.2 (including)

References