CVE-2024-31903

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary code on the system, caused by the deserialization of untrusted data.
References
Link Resource
https://www.ibm.com/support/pages/node/7172233 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*

History

05 Mar 2025, 16:02

Type Values Removed Values Added
First Time Ibm sterling B2b Integrator
Ibm
Summary
  • (es) IBM Sterling B2B Integrator Standard Edition 6.0.0.0 a 6.1.2.5 y 6.2.0.0 a 6.2.0.2 permiten que un atacante en la red local ejecute código arbitrario en sistema, causado por la deserialización de datos no confiables.
CPE cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:standard:*:*:*
References () https://www.ibm.com/support/pages/node/7172233 - () https://www.ibm.com/support/pages/node/7172233 - Vendor Advisory

22 Jan 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-22 16:15

Updated : 2025-03-05 16:02


NVD link : CVE-2024-31903

Mitre link : CVE-2024-31903

CVE.ORG link : CVE-2024-31903


JSON object : View

Products Affected

ibm

  • sterling_b2b_integrator
CWE
CWE-502

Deserialization of Untrusted Data