Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
ProductVersionAPARRemediation & FixIBM Sterling B2B Integrator6.2.0.0 - 6.2.0.6_2, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1IT49630Apply 6.2.1.2_1 or 6.2.2.1_1IBM Sterling File Gateway6.2.0.0 - 6.2.0.6_2, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1IT49630Apply 6.2.1.2_1 or 6.2.2.1_1 The IIM versions 6.2.1.2_1 and 6.2.2.1_1 are available on Fix Central http://www-933.ibm.com/support/fixcentral/swg/selectFixes . The container versions of 6.2.1.2_1 and 6.2.2.1_1 are available in IBM Entitled Registry * cp.icr.io/cp/ibm-b2bi for IBM Sterling B2B Integrator * cp.icr.io/cp/ibm-sfg for IBM Sterling File Gateway
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7287190 |
|
Mon, 14 Sep 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.6_2, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.6_2, 6.2.1.0 - 6.2.1.2, 6.2.2.0 - 6.2.2.1 Standard Edition could allow a remote authenticated attacker to bypass security restrictions due to improper authentication. | |
| Title | The Dashboard of IBM Sterling B2B Integrator and IBM Sterling File Gateway are Vulnerable to Improper Access Control | |
| First Time appeared |
Ibm
Ibm sterling B2b Integrator Ibm sterling File Gateway |
|
| Weaknesses | CWE-287 | |
| CPEs | cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.0.6_2:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.6_2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm sterling B2b Integrator Ibm sterling File Gateway |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-09-14T21:04:21.572Z
Reserved: 2026-08-07T14:26:03.854Z
Link: CVE-2026-19273
No data.
Status : Received
Published: 2026-09-14T21:17:04.490
Modified: 2026-09-14T21:17:04.490
Link: CVE-2026-19273
No data.
OpenCVE Enrichment
No data.
-
CWE-287
Improper Authentication