CVE-2023-42011

IBM Sterling B2B Integrator Standard Edition 6.1 and 6.2 does not restrict or incorrectly restricts frame objects or UI layers that belong to another application or domain, which can lead to user confusion about which interface the user is interacting with. IBM X-Force ID: 265508.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_b2b_integrator:6.1:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:6.2:*:*:*:standard:*:*:*

History

06 Aug 2024, 16:13

Type Values Removed Values Added
CPE cpe:2.3:a:ibm:sterling_b2b_integrator:6.2:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:6.1:*:*:*:standard:*:*:*
First Time Ibm
Ibm sterling B2b Integrator
CVSS v2 : unknown
v3 : 4.3
v2 : unknown
v3 : 5.4
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/265508 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7158657 - () https://www.ibm.com/support/pages/node/7158657 - Vendor Advisory
Summary
  • (es) IBM Sterling B2B Integrator Standard Edition 6.1 y 6.2 no restringe o restringe incorrectamente objetos de marco o capas de UI que pertenecen a otra aplicación o dominio, lo que puede generar confusión en el usuario acerca de con qué interfaz está interactuando. ID de IBM X-Force: 265508.

27 Jun 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-27 18:15

Updated : 2024-08-06 16:13


NVD link : CVE-2023-42011

Mitre link : CVE-2023-42011

CVE.ORG link : CVE-2023-42011


JSON object : View

Products Affected

ibm

  • sterling_b2b_integrator
CWE
CWE-1021

Improper Restriction of Rendered UI Layers or Frames