IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.4, and 6.1.1.0 through 6.1.1.1 could allow an authenticated user to obtain sensitive information due to improper permission controls. IBM X-Force ID: 216109.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6612541 | vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/216109 | vdb entry vendor advisory |