Home

Description

IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5, and 6.2.1.0 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5, and 6.2.1.0 stores user credentials in configuration files which can be read by a local user.

PUBLISHED Reserved 2025-04-15 | Published 2025-10-16 | Updated 2025-10-16 | Assigner ibm




MEDIUM: 5.5CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Problem types

Password in Configuration File

Product status

Default status
unaffected

6.2.0.0
affected

6.2.1.0
affected

Default status
unaffected

6.2.0.0
affected

6.2.1.0
affected

References

www.ibm.com/support/pages/node/7248129 vendor-advisory patch

cve.org (CVE-2025-36002)

nvd.nist.gov (CVE-2025-36002)

Download JSON