First published: Mon Feb 27 2023(Updated: )
IBM Financial Transaction Manager 3.2.0 through 3.2.10 could allow an authenticated user to perform unauthorized actions due to improper validation. IBM X-Force ID: 192954.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Financial Transaction Manager for Corporate Payment Services for Multi-Platform | <=3.2.0-3.2.10 | |
IBM Financial Transaction Manager for Digital Payments for Multi-Platform | <=3.2.0-3.2.10 | |
IBM Financial Transaction Manager for High Value Payments for Multi-Platform | <=3.2.0-3.2.10 | |
Ibm Financial Transaction Manager | >=3.2.0<3.2.11 | |
Ibm Financial Transaction Manager | >=3.2.0<3.2.11 | |
Ibm Financial Transaction Manager | >=3.2.0<3.2.11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-5002.
The severity of CVE-2020-5002 is high with a score of 8.8.
IBM Financial Transaction Manager versions 3.2.0 through 3.2.10 are affected by CVE-2020-5002.
You can fix CVE-2020-5002 by applying the patch provided by IBM. Please refer to the following URL for the patch: [https://www.ibm.com/support/pages/download-ibm-financial-transaction-manager-corporate-payment-services-multiplatforms-v3211](https://www.ibm.com/support/pages/download-ibm-financial-transaction-manager-corporate-payment-services-multiplatforms-v3211).
The Common Weakness Enumeration (CWE) ID for CVE-2020-5002 is CWE-20.