CVE-2013-5413Improper Authentication in IBM Sterling B2B Integrator

Severity
4.3MEDIUMNVD
EPSS
0.3%
top 49.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 21
Latest updateMay 17

Description

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-3f84-gf8q-ggcq: IBM Sterling B2B Integrator 52022-05-17
CVEList
CVE-2013-5413: IBM Sterling B2B Integrator 52013-12-21
CVE-2013-5413 — Improper Authentication in IBM | cvebase