Security Advisory

CVE-2025-36431

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-30 14:36:56
Last updated 2026-07-30 16:14:23
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM Sterling B2B Integrator 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.2.0 through 6.2.2.0_1 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.