CVE Published: 08/02/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2016 Source: ibm |
Vendor: IBM Corporation |
Product: Sterling B2B Integrator Status : PUBLISHED
CVE-2016-0210 Description
IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to obtain sensitive information. By allowing HTTP OPTIONS method, a remote attacker could send a specially-crafted query to a vulnerable server running to cause the server to disclose sensitive information in the HTTP response.