First published: Tue Dec 15 2020(Updated: )
IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 returns the product version and release information on the login dialog. This information could be used in further attacks against the system.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
Ibm Financial Transaction Manager For Multiplatform | =3.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-4908.
The title of this vulnerability is 'IBM Financial Transaction Manager for SWIFT Services returns the product version and release informa…'.
The severity of CVE-2020-4908 is medium (5.3).
CVE-2020-4908 affects IBM Financial Transaction Manager for Multiplatforms 3.2.4.
CVE-2020-4908 can be exploited by using the product version and release information obtained from the login dialog in further attacks against the system.