# CVE-2024-27263

## Summary

- **CVE ID:** CVE-2024-27263
- **Severity:** MEDIUM
- **CVSS Score:** 5.3 (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N)
- **CWE:** CWE-300
- **Published:** Jan 28, 2025
- **Last Modified:** Mar 13, 2026

## Description

IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.1 could allow an authenticated user to obtain sensitive information from the dashboard UI using man in the middle techniques.

## Affected Products

- IBM — Sterling B2B Integrator (6.0.0.0)
- IBM — Sterling B2B Integrator (6.2.0.0)

## References

- [CNA](https://www.ibm.com/support/pages/node/7176072)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.27%
- **EPSS Percentile:** 19.1

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._