PatchSiren

PatchSiren cyber security CVE debrief

CVE-2025-36298 IBM CVE debrief

The CVE-2025-36298 record details a cross-site scripting vulnerability in the Ebics server component of IBM Sterling B2B Integrator and IBM Sterling File Gateway. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI, potentially altering intended functionality and leading to credentials disclosure within a trusted session. Security teams should review the CVE record and apply patches or updates as recommended by the vendor. The vulnerability has a CVSS score of 5.4 and a severity rating of MEDIUM.

Vendor
IBM
Product
Sterling B2B Integrator
CVSS
MEDIUM 5.4
CISA KEV
Not listed in stored evidence
Original CVE published
2026-07-30
Original CVE updated
2026-07-31
Advisory published
2026-07-30
Advisory updated
2026-07-31

Who should care

Security teams responsible for IBM Sterling B2B Integrator and IBM Sterling File Gateway should review and apply patches. System administrators and users of affected versions should be aware of potential exploitation risks and take necessary precautions to protect their systems. This includes reviewing system configurations, monitoring for suspicious activity, and implementing compensating controls as needed.

Technical summary

The Ebics server component in IBM Sterling B2B Integrator 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.1.2.0 through 6.1.2.7_2, 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to cross-site scripting. An authenticated user can embed arbitrary JavaScript code in the Web UI, potentially altering the intended functionality and leading to credentials disclosure within a trusted session.

Defensive priority

Medium-priority defensive review recommended due to potential for authenticated user exploitation.

Recommended defensive actions

  • Review and apply vendor-provided patches or updates.
  • Implement compensating controls such as Web Application Firewalls.
  • Monitor for suspicious activity and exception tracking.
  • Conduct inventory checks for affected systems.
  • Confirm whether affected product deployments exist in managed environments and assign an owner for follow-up.
  • Review the supplied official advisory or CVE record to validate affected scope, severity, and vendor guidance.
  • Plan vendor-supported updates or mitigations through normal change control where exposure is confirmed.

Evidence notes

Evidence from official CVE and NVD sources indicates a cross-site scripting vulnerability in IBM Sterling B2B Integrator and IBM Sterling File Gateway Ebics server component. Authenticated users may embed arbitrary JavaScript code in the Web UI, potentially altering functionality and leading to credentials disclosure within a trusted session.

Official resources

AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-07-30T15:16:22.110Z and has not been modified since then.