Description
IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim.
Affected products
- IBM Corporation / Sterling B2B Integrator5.1 – 5.1
- IBM Corporation / Sterling B2B Integrator5.2 – 5.2
- IBM Corporation / Sterling B2B Integrator4.3 – 4.3
- IBM Corporation / Sterling B2B Integrator5.0 – 5.0
- IBM Corporation / Sterling B2B Integrator5.2.4 – 5.2.4
- IBM Corporation / Sterling B2B Integrator
- IBM Corporation / Sterling B2B Integrator5.2.1 – 5.2.1
- IBM Corporation / Sterling B2B Integrator5.2.2 – 5.2.2
- IBM Corporation / Sterling B2B Integrator5.2.3 – 5.2.3
- IBM Corporation / Sterling B2B Integrator5.2.4.1 – 5.2.4.1
- IBM Corporation / Sterling B2B Integrator5.2.4.2 – 5.2.4.2
- IBM Corporation / Sterling B2B Integrator5.2.5 – 5.2.5
- IBM Corporation / Sterling B2B Integrator5.2.6 – 5.2.6