CVE-2014-0927Improper Authentication in IBM Sterling B2B Integrator

Severity
8.1HIGHNVD
EPSS
0.3%
top 50.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 20
Latest updateMay 14

Description

The ActiveMQ admin user interface in IBM Sterling B2B Integrator 5.1 and 5.2 and Sterling File Gateway 2.1 and 2.2 allows remote attackers to bypass authentication by leveraging knowledge of the port number and webapp path. IBM X-Force ID: 92259.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9qmc-h2c4-jm5m: The ActiveMQ admin user interface in IBM Sterling B2B Integrator 52022-05-14
CVEList
CVE-2014-0927: The ActiveMQ admin user interface in IBM Sterling B2B Integrator 52018-04-20
CVE-2014-0927 — Improper Authentication in IBM | cvebase