IBM Sterling B2B Integrator Standard Edition 6.1.0.0 through 6.1.1.1, and 6.1.2.0 could allow an authenticated user to perform actions they should not have access to due to improper permission controls. IBM X-Force ID: 235597.
During installation, installed file permissions are set to allow anyone to modify those files.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6954465 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/235597 | vdb entry vendor advisory |