cbcvebase.
CVE-2024-45089
published 2025-01-31

CVE-2024-45089: IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition EBICS server could allow an authenticated user to obtain…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition EBICS server could allow an authenticated user to obtain sensitive filename information due to an observable discrepancy.

Affected

2 ranges
VendorProductVersion rangeFixed in
ibmsterling_b2b_integrator6.0.0.0 – 6.1.2.5
ibmsterling_b2b_integrator6.2.0.0 – 6.2.0.3