CVE-2013-5413

IBM Sterling B2B Integrator <5.2 - Auth Bypass

Title source: llm

Description

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not invalidate a session upon a logout action, which allows remote attackers to bypass authentication by leveraging an unattended workstation.

Scores

EPSS 0.0027
EPSS Percentile 49.8%

Classification

CWE
CWE-287
Status draft

Affected Products (2)

ibm/sterling_b2b_integrator
ibm/sterling_file_gateway

Timeline

Published Dec 21, 2013
Tracked Since Feb 18, 2026