cbcvebase.
CVE-2026-7253
published 2026-06-22

CVE-2026-7253: IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL injection. A privileged user could send specially crafted SQL statements, which…

PriorityP357high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
0.37%
31.1th percentile
IBM Sterling B2B Integrator and IBM Sterling File Gateway are vulnerable to SQL injection. A privileged user could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.

Affected

6 ranges
VendorProductVersion rangeFixed in
ibmsterling_b2b_integrator6.2.1.0 – 6.2.1.1_2—
ibmsterling_b2b_integrator6.2.2.0 – 6.2.2.0_1—
ibmsterling_file_gateway6.2.1.0 – 6.2.1.1_2—
ibmsterling_file_gateway6.2.2.0 – 6.2.2.0_1—
ibmwatson_speech_services_cartridge——
ibmwatson_speech_services_cartridge>= 4.0.0 < 5.3.15.3.1
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.