CVE-2024-31903
published 2025-01-22CVE-2024-31903: IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary…
high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary code on the system, caused by the deserialization of untrusted data.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | sterling_b2b_integrator | 6.0.0.0 – 6.1.2.5 | — |
| ibm | sterling_b2b_integrator | 6.2.0.0 – 6.2.0.2 | — |
| ibm | sterling_b2b_integrator_standard_edition | 6.0.0.0 – 6.1.2.5 | — |
| ibm | sterling_b2b_integrator_standard_edition | 6.2.0.0 – 6.2.0.2 | — |