CVE-2013-5407: IBM Sterling b2b Integrator

Medium severity, CVSS 4.9. EPSS: 0.8% chance of exploitation in the next 30 days.

IBM Sterling B2B Integrator 5.2 and Sterling File Gateway 2.2 do not properly restrict use of FRAME elements, which allows remote authenticated users to bypass intended access restrictions or obtain sensitive information via a crafted web site, related to a "frame injection" issue.

Affected products

  • IBM Sterling b2b Integrator: version 5.2 only
  • IBM Sterling File Gateway: version 2.2 only

Published 2013-12-21. Last modified 2026-06-16.