IBM Sterling B2B Integrator & File Gateway Auth Bypass 6.2.1.0-6.2.2.0_1
CVE-2026-7362 Published on July 28, 2026

Improper Access Control Security Vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway
IBM Sterling B2B Integrator 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 could allow an authenticated user to obtain sensitive information that should only be available to a privileged user.

Vendor Advisory NVD

Vulnerability Analysis

CVE-2026-7362 is exploitable with network access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a small impact on confidentiality, a small impact on integrity and availability.

Attack Vector:
NETWORK
Attack Complexity:
LOW
Privileges Required:
LOW
User Interaction:
NONE
Scope:
UNCHANGED
Confidentiality Impact:
LOW
Integrity Impact:
NONE
Availability Impact:
NONE

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2026-7362 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2026-7362

stack.watch emails you whenever new vulnerabilities are published in IBM Sterling B2b Integrator or IBM Sterling File Gateway. Just hit a watch button to start following.

 
 

Affected Versions

IBM Sterling B2B Integrator: IBM Sterling File Gateway: