PatchSiren cyber security CVE debrief
CVE-2025-36298 IBM CVE debrief
The CVE-2025-36298 record details a cross-site scripting vulnerability in the Ebics server component of IBM Sterling B2B Integrator and IBM Sterling File Gateway. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI, potentially altering intended functionality and leading to credentials disclosure within a trusted session. Security teams should review the CVE record and apply patches or updates as recommended by the vendor. The vulnerability has a CVSS score of 5.4 and a severity rating of MEDIUM.
- Vendor
- IBM
- Product
- Sterling B2B Integrator
- CVSS
- MEDIUM 5.4
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-07-30
- Original CVE updated
- 2026-07-31
- Advisory published
- 2026-07-30
- Advisory updated
- 2026-07-31
Who should care
Security teams responsible for IBM Sterling B2B Integrator and IBM Sterling File Gateway should review and apply patches. System administrators and users of affected versions should be aware of potential exploitation risks and take necessary precautions to protect their systems. This includes reviewing system configurations, monitoring for suspicious activity, and implementing compensating controls as needed.
Technical summary
The Ebics server component in IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to cross-site scripting. An authenticated user can embed arbitrary JavaScript code in the Web UI, potentially altering the intended functionality and leading to credentials disclosure within a trusted session.
Defensive priority
Medium-priority defensive review recommended due to potential for authenticated user exploitation.
Recommended defensive actions
- Review and apply vendor-provided patches or updates.
- Implement compensating controls such as Web Application Firewalls.
- Monitor for suspicious activity and exception tracking.
- Conduct inventory checks for affected systems.
- Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up.
- Review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance.
- Plan vendor-supported updates or mitigations through normal change control where exposure is confirmed.
Evidence notes
Evidence from official CVE and NVD sources indicates a cross-site scripting vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway Ebics server component. Authenticated users may embed arbitrary JavaScript code in the Web UI, potentially altering functionality and leading to credentials disclosure within a trusted session.
Official resources
-
CVE-2025-36298 CVE record
CVE.org
-
CVE-2025-36298 NVD detail
NVD
-
Source item URL
nvd_modified
- Source reference
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-30T15:16:22.110Z and has not been modified since then.