CVE-2013-0475
published 2013-07-03CVE-2013-0475: IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about…
PriorityP414medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
0.94%
56.7th percentile
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-2987, CVE-2013-3020, CVE-2013-0568, and CVE-2013-0567.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| eglibc | eglibc | >= 0 < 2.19-0ubuntu6.1 | 2.19-0ubuntu6.1 |
| ibm | sterling_b2b_integrator | — | — |
| ibm | sterling_b2b_integrator | — | — |
| ibm | sterling_file_gateway | — | — |
| ibm | sterling_file_gateway | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
osv7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m872-fpgq-gw4v: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-17·CVSS 4.0
CVE-2013-3020 [MEDIUM] CWE-200 GHSA-m872-fpgq-gw4v: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-2987, CVE-2013-0568, CVE-2013-0475, and CVE-2013-0567.
GHSA
GHSA-fhq7-ggf4-7jv5: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-17·CVSS 4.0
CVE-2013-2985 [MEDIUM] CWE-200 GHSA-fhq7-ggf4-7jv5: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2987, CVE-2013-3020, CVE-2013-0568, CVE-2013-0475, and CVE-2013-0567.
GHSA
GHSA-2cmc-76vf-3g3r: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-17·CVSS 4.0
CVE-2013-2987 [MEDIUM] CWE-200 GHSA-2cmc-76vf-3g3r: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-3020, CVE-2013-0568, CVE-2013-0475, and CVE-2013-0567.
GHSA
GHSA-rvp7-wrjj-rgvf: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-05·CVSS 4.0
CVE-2013-0568 [MEDIUM] CWE-200 GHSA-rvp7-wrjj-rgvf: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-2987, CVE-2013-3020, CVE-2013-0475, and CVE-2013-0567.
GHSA
GHSA-7578-v4gv-6jrj: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-05·CVSS 4.0
CVE-2013-0475 [MEDIUM] CWE-200 GHSA-7578-v4gv-6jrj: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-2987, CVE-2013-3020, CVE-2013-0568, and CVE-2013-0567.
GHSA
GHSA-pg3g-rgmp-8hp4: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-05·CVSS 4.0
CVE-2013-0567 [MEDIUM] CWE-200 GHSA-pg3g-rgmp-8hp4: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-0463, CVE-2013-2985, CVE-2013-2987, CVE-2013-3020, CVE-2013-0568, and CVE-2013-0475.
GHSA
GHSA-wgxc-hmmq-r3v4: IBM Sterling B2B Integrator 5
ghsa_unreviewed·2022-05-05·CVSS 4.0
CVE-2013-0463 [MEDIUM] CWE-200 GHSA-wgxc-hmmq-r3v4: IBM Sterling B2B Integrator 5
IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allow remote authenticated users to obtain sensitive information about application implementation via unspecified vectors, a different vulnerability than CVE-2013-2985, CVE-2013-2987, CVE-2013-3020, CVE-2013-0568, CVE-2013-0475, and CVE-2013-0567.
OSV
eglibc vulnerabilities
osv·2014-08-04·CVSS 7.5
CVE-2013-4357 eglibc vulnerabilities
eglibc vulnerabilities
Maksymilian Arciemowicz discovered that the GNU C Library incorrectly
handled the getaddrinfo() function. An attacker could use this issue to
cause a denial of service. This issue only affected Ubuntu 10.04 LTS.
(CVE-2013-4357)
It was discovered that the GNU C Library incorrectly handled the
getaddrinfo() function. An attacker could use this issue to cause a denial
of service. This issue only affected Ubuntu 10.04 LTS and Ubuntu 12.04 LTS.
(CVE-2013-4458)
Stephane Chazelas discovered that the GNU C Library incorrectly handled
locale environment variables. An attacker could use this issue to possibly
bypass certain restrictions such as the ForceCommand restrictions in
OpenSSH. (CVE-2014-0475)
David Reid, Glyph Lefkowitz, and Alex Gaynor discovered that the GNU C
L
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2013-07-03
Published