216.73.217.172

CVE-2025-36002

· Published 16/10/2025 15:15 · Modified 16/10/2025 16:15

Labels: CVE-2025-36002 2025-10-16CVE-2025-36002CWE-256[email protected]

Essential information

Published
16/10/2025 15:15
Modified
16/10/2025 16:15
Author
Creator
CVSS
5.5 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

CVSS metrics

Description

IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5, and 6.2.1.0 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5, and 6.2.1.0 stores user credentials in configuration files which can be read by a local user.

NVD status

Status
Awaiting Analysis — CVE has been marked for Analysis. Normally once in this state the CVE will be analyzed by NVD staff within 24 hours.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ibm / sterling b2b integrator cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.0.0-6.2.0.5:*:*:*:*:*:*:*
ibm / sterling b2b integrator cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.1.0:*:*:*:*:*:*:*
ibm / sterling file gateway cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0-6.2.0.5:*:*:*:*:*:*:*
ibm / sterling file gateway cpe:2.3:a:ibm:sterling_file_gateway:6.2.1.0:*:*:*:*:*:*:*

References