SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-7775

MEDIUM · CVSS 5.5 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-07-28 · Last synced 2026-08-27

CyberRota Analysis

AI-Generated

IBM Sterling B2B Integrator and IBM Sterling File Gateway versions 6.2.0 to 6.2.2 are susceptible to stored cross-site scripting, enabling privileged users to inject arbitrary JavaScript into the Web UI. This vulnerability can compromise the integrity of user sessions, potentially leading to credential disclosure. Organizations utilizing these affected products should prioritize remediation to safeguard against unauthorized access and data breaches.

CVE
CVE-2026-7775
Severity
MEDIUM
CVSS
5.5
EPSS
0.14%
Java

Original NVD Description

IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.6, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.6, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

Related CVEs

Other vulnerabilities affecting the same vendor(s)