IBM Sterling B2B Integrator/File Gateway 6.2.x Info Disclosure via Logs
CVE-2026-1918 Published on July 28, 2026
IBM Sterling B2B Integrator and IBM Sterling File Gateway store sensitive information in a log file
IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 stores potentially sensitive information in log files that could be read by a privileged user.
Vulnerability Analysis
CVE-2026-1918 is exploitable with network access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity and availability.
Weakness Type
Insertion of Sensitive Information into Log File
Information written to log files can be of a sensitive nature and give valuable guidance to an attacker or expose sensitive user information.
Products Associated with CVE-2026-1918
stack.watch emails you whenever new vulnerabilities are published in IBM Sterling B2b Integrator or IBM Sterling File Gateway. Just hit a watch button to start following.
Affected Versions
IBM Sterling B2B Integrator:- Version 6.2.0.0, <= 6.2.0.5_2 is affected.
- Version 6.2.1.0, <= 6.2.1.1_2 is affected.
- Version 6.2.2.0, <= 6.2.2.0_1 is affected.
- Version 6.2.0.0, <= 6.2.0.5_2 is affected.
- Version 6.2.1.0, <= 6.2.1.1_2 is affected.
- Version 6.2.2.0, <= 6.2.2.0_1 is affected.