CVE-2018-1392: Infoleak
Published Feb 22, 2018
·Updated
IBM Financial Transaction Manager 3.0.4 and 3.1.0 for ACH Services for Multi-Platform could allow an authenticated user to execute a specially crafted command that could obtain sensitive information. IBM X-Force ID: 138377.
Affected Software
2 affected components
IBM Financial Transaction Manager Ach Services=3.0.4.0
IBM Financial Transaction Manager Ach Services=3.1.0.0
Remediation
Patch Available
Event History
Feb 22, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-1392.
2
What is the affected software for this vulnerability?
The affected software for this vulnerability is IBM Financial Transaction Manager 3.0.4 and 3.1.0 for ACH Services for Multi-Platform.
3
What is the severity of CVE-2018-1392?
The severity of CVE-2018-1392 is low with a severity value of 3.1.
4
How can an authenticated user exploit this vulnerability?
An authenticated user can exploit this vulnerability by executing a specially crafted command to obtain sensitive information.
5
How can I fix CVE-2018-1392?
To fix CVE-2018-1392, it is recommended to apply the necessary security patches provided by IBM Financial Transaction Manager.