nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2026-3157 CVE-2026-3157
MEDIUM
Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway due to information disclosure in mailbox UI
Record summary
CVE-2026-3157 has a selected CVSS score of 4.3 (medium).
Description
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to an information disclosure due to sensitive information being included in the source code comments of a mailbox component.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Jul 29, 2026 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Sterling B2B IntegratorBrowse IBM / Sterling B2B Integrator | CVE List | 6.2.0.0 to ≤ 6.2.0.5_2 | affected |
| 6.2.1.0 to ≤ 6.2.1.1_2 | affected | ||
| 6.2.2.0 to ≤ 6.2.2.0_1 | affected | ||
Sterling File GatewayBrowse IBM / Sterling File Gateway | CVE List | 6.2.0.0 to ≤ 6.2.0.5_2 | affected |
| 6.2.1.0 to ≤ 6.2.1.1_2 | affected | ||
| 6.2.2.0 to ≤ 6.2.2.0_1 | affected |
References
2ibm.comVendor advisorypatch
https://www.ibm.com/support/pages/node/7280665