IBM Security Bulletin: HTTP verb tampering vulnerability affects IBM Sterling B2B Integrator (CVE-2017-1131)
IBM Sterling B2B Integrator Standard Edition could allow an authenticated user to obtain sensitive information by using unsupported, specially crafted HTTP commands.
CVE(s): CVE-2017-1131
Affected product(s) and affected version(s):
IBM Sterling B2B Integrator 5.2
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2sUzIFA
X-Force Database: http://ift.tt/2tSu042
The post IBM Security Bulletin: HTTP verb tampering vulnerability affects IBM Sterling B2B Integrator (CVE-2017-1131) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2sUn0qa