Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pr3f-84fh-7r83

Опубликовано: 18 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.4

Описание

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.4 uses a web link with untrusted references to an external site. A remote attacker could exploit this vulnerability to expose sensitive information or perform unauthorized actions on the victims’ web browser.

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.4 uses a web link with untrusted references to an external site. A remote attacker could exploit this vulnerability to expose sensitive information or perform unauthorized actions on the victims’ web browser.

EPSS

Процентиль: 7%
0.00026
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-1022

Связанные уязвимости

CVSS3: 5.4
nvd
7 месяцев назад

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.4 uses a web link with untrusted references to an external site. A remote attacker could exploit this vulnerability to expose sensitive information or perform unauthorized actions on the victims’ web browser.

EPSS

Процентиль: 7%
0.00026
Низкий

5.4 Medium

CVSS3

Дефекты

CWE-1022