CVE-2019-4575: SQL Injection
IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.9 is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. IBM X-Force ID: 166801.
Other sources
IBM Financial Transaction Manager for Digital Payments for Multi-Platform is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2019-4575?
CVE-2019-4575 is a vulnerability in IBM Financial Transaction Manager for Digital Payments for Multi-Platform versions 3.2.0 through 3.2.9 that allows for SQL injection attacks.
What is the severity of CVE-2019-4575?
The severity of CVE-2019-4575 is critical, with a severity value of 9.8.
How does CVE-2019-4575 affect IBM Financial Transaction Manager?
CVE-2019-4575 affects IBM Financial Transaction Manager for Digital Payments for Multi-Platform versions 3.2.0 through 3.2.9, allowing attackers to view, add, modify, or delete information in the back-end database through SQL injection.
How can I fix CVE-2019-4575?
To fix CVE-2019-4575, apply the appropriate patches or updates provided by IBM, which can be found at the official IBM support page.
Where can I find more information about CVE-2019-4575?
You can find more information about CVE-2019-4575 at the IBM X-Force Exchange website and the official IBM support pages.