Ibm Corporation Financial Transaction Manager vulnerabilities
2 known vulnerabilities affecting ibm_corporation/financial_transaction_manager.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2017-1160MEDIUMCVSS 5.4v3.0.0.0v3.0.0.1+14 more2017-04-17
CVE-2017-1160 [MEDIUM] CWE-79 CVE-2017-1160: IBM Financial Transaction Manager for ACH Services for Multi-Platform 3.0.0.x is vulnerable to cross
IBM Financial Transaction Manager for ACH Services for Multi-Platform 3.0.0.x is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 122892.
cvelistv5nvd
CVE-2017-1152MEDIUMCVSS 4.3v3.0.1v3.0.1.0+3 more2017-04-14
CVE-2017-1152 [MEDIUM] CWE-384 CVE-2017-1152: IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each r
IBM Financial Transaction Manager 3.0.1 and 3.0.2 does not properly update the SESSIONID with each request, which could allow a user to obtain the ID in further attacks against the system. IBM X-Force ID: 122293.
cvelistv5nvd