CVE-2022-40231 MEDIUM

CVE-2022-40231: IBM Sterling B2B Integrator Standard Edition improper access control

Vendor Ibm
Product Sterling B2B Integrator Standard Edition
Published February 17, 2023
Last update March 12, 2025

CVSS base score

4.3/10
Attack vector Network
Attack complexity Low
Privileges required Low
User interaction None
Confidentiality None
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

What the vulnerability does

01Description

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.7 and 6.1.0.0 through 6.1.2.0 could allow an authenticated user to perform unauthorized actions due to improper access controls. IBM X-Force ID: 235533.

Key dates

02Disclosure timeline

February 17, 2023 CVE published
March 12, 2025 Record updated