CVE-2023-42011

IBM Sterling B2B Integrator Standard Edition 6.1 and 6.2 does not restrict or incorrectly restricts frame objects or UI layers that belong to another application or domain, which can lead to user confusion about which interface the user is interacting with. IBM X-Force ID: 265508.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_b2b_integrator:6.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:6.2:*:*:*:standard:*:*:*

History

21 Nov 2024, 08:22

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7158657 - Vendor Advisory () https://www.ibm.com/support/pages/node/7158657 - Vendor Advisory
CVSS v2 : unknown
v3 : 5.4
v2 : unknown
v3 : 4.3

06 Aug 2024, 16:13

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:sterling_b2b_integrator:6.2:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:6.1:*:*:*:standard:*:*:*
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7158657 - () https://www.ibm.com/support/pages/node/7158657 - Vendor Advisory
First Time Ibm
Ibm sterling B2b Integrator
CVSS v2 : unknown
v3 : 4.3
v2 : unknown
v3 : 5.4

27 Jun 2024, 19:25

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-27 18:15

Updated : 2024-11-21 08:22


NVD link : CVE-2023-42011

Mitre link : CVE-2023-42011

CVE.ORG link : CVE-2023-42011


JSON object : View

Products Affected

ibm

  • sterling_b2b_integrator
CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames