CVE-2026-3482: IBM Sterling B2B Integrator and IBM Sterling File Gateway Authorization Bypass
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.52, 6.2.1.0 through 6.2.1.12, and 6.2.2.0 through 6.2.2.01 could allow an unauthenticated user to read sensitive information by bypassing authentication through a specially crafted HTTP request.
Other sources
IBM Sterling B2B Integrator and IBM Sterling File Gateway could allow an unauthenticated user to read sensitive information by bypassing authentication through a specially crafted HTTP request.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Sterling B2B Integrator and IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.0.6Patch IT49168 - Upgrade
Upgrade
IBM Sterling B2B Integrator and IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.1.2Patch IT49168 - Upgrade
Upgrade
IBM Sterling B2B Integrator and IBM Sterling File Gatewayto a version that resolves this vulnerability.Fixed in 6.2.2.1Patch IT49168