CVE-2024-45089

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 31, 2025
CWE ID 203

Summary

CVE-2024-45089 is a vulnerability affecting IBM Sterling B2B Integrator versions 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.3 Standard Edition EBICS servers. An authenticated user can exploit this issue to gain sensitive filename information due to a noticeable inconsistency. This discrepancy may pose a potential security risk if the information is used maliciously. IBM has released patches to address this vulnerability, and users are strongly encouraged to apply them to mitigate potential threats.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM Sterling B2B Integrator

Affected Vendors

  • IBM Corporation