IBM Sterling B2B Integrator Standard Edition 6.0.0.0...
Moderate severity
Unreviewed
Published
Jan 5, 2023
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Jan 5, 2023
Published to the GitHub Advisory Database
Jan 5, 2023
Last updated
Feb 3, 2023
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 does not invalidate session after a password change which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 221195.
References