CVE-2020-4655: IBM Sterling b2b Integrator

High severity, CVSS 8.8. EPSS: 1.3% chance of exploitation in the next 30 days.

IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.2 and 5.2.0.0 through 5.2.6.5 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 186091.

Affected products

  • IBM Sterling b2b Integrator: from 5.2.0.0, up to and including 5.2.6.5; from 6.0.0.0, up to and including 6.0.3.2

Published 2020-11-16. Last modified 2026-06-17.