CVE-2025-36112

EUVD-2025-198981
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7 and 6.2.0.0 through 6.2.0.5 and 6.2.1.1 could reveal sensitive server IP configuration information to an unauthorized user.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
ibmCNA
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
ibmsterling_b2b_integrator
6.0.0.0 ≤
𝑥
< 6.1.2.7_2
ibmsterling_b2b_integrator
6.2.0.0 ≤
𝑥
< 6.2.0.5_1
ibmsterling_b2b_integrator
6.2.1.1
ibmsterling_file_gateway
6.0.0.0 ≤
𝑥
< 6.1.2.7_2
ibmsterling_file_gateway
6.2.0.0 ≤
𝑥
< 6.2.0.5_1
ibmsterling_file_gateway
6.2.1.1
𝑥
= Vulnerable software versions