CVE-2024-31903

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary code on the system, caused by the deserialization of untrusted data.
References
Link Resource
https://www.ibm.com/support/pages/node/7172233 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*

History

05 Mar 2025, 16:02

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7172233 - () https://www.ibm.com/support/pages/node/7172233 - Vendor Advisory
CPE cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*
First Time Ibm sterling B2b Integrator
Ibm

22 Jan 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-22 16:15

Updated : 2025-03-05 16:02


NVD link : CVE-2024-31903

Mitre link : CVE-2024-31903


JSON object : View

Products Affected

ibm

  • sterling_b2b_integrator
CWE
CWE-502

Deserialization of Untrusted Data