cbcvebase.
CVE-2016-0268
published 2018-03-09

CVE-2016-0268: XML external entity (XXE) vulnerability in IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013…

medium4.3CVSS 3.0
AVNACLPRLUINSUCLINAN
XML external entity (XXE) vulnerability in IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, Financial Transaction Manager (FTM) for Check Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, and Financial Transaction Manager (FTM) for Corporate Payment Services (CPS) for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013 allows remote authenticated users to obtain sensitive information via crafted XML data. IBM X-Force ID: 110915.

Affected

2 ranges
VendorProductVersion rangeFixed in
ibmfinancial_transaction_manager
ibmfinancial_transaction_manager3.0.0.0 – 3.0.0.12