Medium severity5.5NVD Advisory· Published Oct 16, 2025· Updated Jun 17, 2026
CVE-2025-36002
CVE-2025-36002
Description
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5, and 6.2.1.0 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5, and 6.2.1.0 stores user credentials in configuration files which can be read by a local user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:ibm:sterling_b2b_integrator:*:*:*:*:*:*:*:*range: >=6.2.0.0,<6.2.0.5_1
- cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.0.0:*:*:*:*:*:*:*range: 6.2.0.0
- cpe:2.3:a:ibm:sterling_b2b_integrator:6.2.1.0:*:*:*:*:*:*:*
- (no CPE)range: 6.2.0.0 - 6.2.0.5, 6.2.1.0
cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:ibm:sterling_file_gateway:*:*:*:*:*:*:*:*range: >=6.2.0.0,<6.2.0.5_1
- cpe:2.3:a:ibm:sterling_file_gateway:6.2.0.0:*:*:*:*:*:*:*range: 6.2.0.0
- cpe:2.3:a:ibm:sterling_file_gateway:6.2.1.0:*:*:*:*:*:*:*
- (no CPE)range: 6.2.0.0 - 6.2.0.5, 6.2.1.0
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7248129nvdVendor Advisory
News mentions
0No linked articles in our index yet.