📦 Sterling B2b Integrator

by Ibm

🔍 What is Sterling B2b Integrator?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-29798

CRITICAL CVSS 9.8 Oct 6, 2021

This SQL injection vulnerability in IBM Sterling B2B Integrator allows remote attackers to execute arbitrary SQL commands against the backend database. Attackers could view, modify, or delete sensitiv...

CVE-2021-29903

CRITICAL CVSS 9.8 Oct 6, 2021

CVE-2021-29903 is a SQL injection vulnerability in IBM Sterling B2B Integrator Standard Edition that allows remote attackers to execute arbitrary SQL commands. This could enable attackers to view, mod...

CVE-2024-31903

HIGH CVSS 8.8 Jan 22, 2025

This vulnerability allows attackers on the local network to execute arbitrary code on IBM Sterling B2B Integrator systems by exploiting insecure deserialization. It affects IBM Sterling B2B Integrator...

CVE-2021-20584

HIGH CVSS 7.5 Oct 7, 2021

IBM Sterling File Gateway versions 2.2.0.0 through 6.1.1.0 have an improper access control vulnerability that allows remote attackers to upload arbitrary files. This could lead to unauthorized file sy...

CVE-2021-29837

HIGH CVSS 8.8 Oct 6, 2021

This CSRF vulnerability in IBM Sterling B2B Integrator allows attackers to trick authenticated users into performing unauthorized actions by sending malicious requests from their browsers. It affects ...

CVE-2025-36348

MEDIUM CVSS 4.9 Feb 17, 2026

This vulnerability in IBM Sterling B2B Integrator and File Gateway exposes sensitive technical error messages to remote privileged attackers. Attackers can gain detailed system information that could ...

CVE-2025-36112

MEDIUM CVSS 5.3 Nov 24, 2025

This vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway allows unauthorized users to access sensitive server IP configuration information. Affected organizations using vulnerable v...

CVE-2025-36135

MEDIUM CVSS 5.4 Nov 7, 2025

This CVE describes a cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway. An authenticated attacker can inject malicious JavaScript into the web interface...

CVE-2025-2694

MEDIUM CVSS 4.8 Sep 4, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and File Gateway allows privileged users to inject malicious JavaScript into the web interface. The injected code can execu...

CVE-2025-33008

MEDIUM CVSS 5.4 Aug 19, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and File Gateway allows authenticated attackers to inject malicious JavaScript into the web interface. This could lead to s...

CVE-2025-1348

MEDIUM CVSS 4.0 Jun 18, 2025

This vulnerability allows a local user to access sensitive information from another user's web browser cache due to improper caching policies in IBM Sterling products. It affects IBM Sterling B2B Inte...

CVE-2024-54183

MEDIUM CVSS 5.4 Jun 18, 2025

This CVE describes a stored cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway. An authenticated attacker can inject malicious JavaScript into the web in...

CVE-2024-56338

MEDIUM CVSS 4.8 Mar 11, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator allows privileged users to inject malicious JavaScript into the web interface. Attackers could steal session credentials or...

CVE-2024-47103

MEDIUM CVSS 4.8 Jan 31, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator allows privileged users to inject malicious JavaScript into the web interface. If exploited, it could lead to credential th...

CVE-2024-49807

MEDIUM CVSS 6.4 Jan 31, 2025

This stored XSS vulnerability in IBM Sterling B2B Integrator allows authenticated users to inject malicious JavaScript into the web interface. If exploited, it could lead to session hijacking or crede...

CVE-2024-40696

MEDIUM CVSS 4.8 Jan 31, 2025

This CVE describes a cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator that allows privileged users to inject malicious JavaScript into the web interface. The vulnerability could...

CVE-2023-38739

MEDIUM CVSS 4.3 Jan 31, 2025

This CSRF vulnerability in IBM Sterling B2B Integrator allows attackers to trick authenticated users into performing unauthorized actions by sending malicious requests. Affected users are those runnin...

CVE-2023-32340

MEDIUM CVSS 4.6 Jan 23, 2025

This cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator allows attackers to inject malicious JavaScript into the web interface. When exploited, it can steal user credentials or pe...

CVE-2024-31913

MEDIUM CVSS 5.5 Jan 6, 2025

IBM Sterling B2B Integrator is vulnerable to stored cross-site scripting (XSS) that allows authenticated users to inject malicious JavaScript into the web interface. This can lead to session hijacking...

CVE-2021-20553

MEDIUM CVSS 5.4 Dec 19, 2024

This CVE describes a cross-site scripting (XSS) vulnerability in IBM Sterling B2B Integrator that allows attackers to inject malicious JavaScript into the web interface. Users of IBM Sterling B2B Inte...

CVE-2023-42011

MEDIUM CVSS 4.3 Jun 27, 2024

This vulnerability in IBM Sterling B2B Integrator allows clickjacking attacks where malicious websites can embed the application's interface in hidden frames or layers. Attackers can trick users into ...

CVE-2025-36134

LOW CVSS 3.7 Nov 25, 2025

This vulnerability allows attackers to potentially steal sensitive session cookies in IBM Sterling B2B Integrator and Sterling File Gateway products. Attackers could perform cross-site request forgery...