Vulnerabilities > IBM > Sterling B2B Integrator > 5.2.4

DATE CVE VULNERABILITY TITLE RISK
2014-10-26 CVE-2014-6099 Credentials Management vulnerability in IBM Sterling B2B Integrator 5.2/5.2.4
The Change Password feature in IBM Sterling B2B Integrator 5.2.x through 5.2.4 does not have a lockout protection mechanism for invalid login requests, which makes it easier for remote attackers to obtain admin access via a brute-force approach.
network
low complexity
ibm CWE-255
5.0
2013-07-02 CVE-2013-0455 Cross-Site Scripting vulnerability in IBM Sterling B2B Integrator and Sterling File Gateway
Multiple cross-site scripting (XSS) vulnerabilities in IBM Sterling B2B Integrator 5.2.4 and Sterling File Gateway allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
ibm CWE-79
4.3