CVE-2014-6146CVE-2014-6146

Affected configuration(s):

cpe:/a:ibm:sterling_b2b_integrator:5.2.1
cpe:/a:ibm:sterling_b2b_integrator:5.2.2
cpe:/a:ibm:sterling_b2b_integrator:5.2.4

Date published: 2014-11-08T06:55:02.630-05:00

Date last modified: 2017-09-07T21:29:10.073-04:00

CVSS Score: 1.9

Principal attack vector: LOCAL

Complexity:  MEDIUM

Reference URL: http://www-01.ibm.com/support/docview.wss?uid=swg1IT04337

Summary: IBM Sterling B2B Integrator 5.2.x through 5.2.4, when the Connect:Direct Server Adapter is configured, does not properly process the logging configuration, which allows local users to obtain sensitive information by reading log files.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.