IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 Standard Edition could allow highly sensitive information to be transmitted in plain text. An attacker could obtain this information using man in the middle techniques. IBM X-ForceID: 157008.
The product transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/157008 | vdb entry vendor advisory |
http://www.securityfocus.com/bid/107310 | third party advisory vdb entry |
https://www.ibm.com/support/docview.wss?uid=ibm10874234 | patch vendor advisory |