CVE-2025-2988

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7, 6.2.0.0 through 6.2.0.4, and 6.2.1.0 could disclose sensitive server information to an unauthorized user that could aid in further attacks against the system.
References
Link Resource
https://www.ibm.com/support/pages/node/7242391 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:sterling_file_gateway:6.2.1.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-08-19 20:15

Updated : 2025-09-17 17:56


NVD link : CVE-2025-2988

Mitre link : CVE-2025-2988

CVE.ORG link : CVE-2025-2988


JSON object : View

Products Affected

ibm

  • sterling_b2b_integrator
  • sterling_file_gateway
CWE
CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere