IBM Financial Transaction Manager 3.2.4 authorization checks are done incorrectly for some HTTP requests which allows getting unauthorized technical information (e.g. event log entries) about the FTM SWIFT system. IBM X-Force ID: 239708.
2022-12-20T19:15:24.990
2024-11-21T07:27:18.593
Modified
CVSSv3.1: 5.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | financial_transaction_manager | 3.2.4 | Yes |
Operating System | ibm | aix | - | No |
Operating System | ibm | linux_on_ibm_z | - | No |
Operating System | linux | linux_kernel | - | No |