CVE-2020-5026: High severity ibm financial transaction manager vulnerability
IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.7 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 193662.
Other sources
IBM Financial Transaction Manager for Digital Payments for Multi-Platform could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-5026?
CVE-2020-5026 is a vulnerability in IBM Financial Transaction Manager for Digital Payments for Multi-Platform that could allow a remote attacker to obtain sensitive information.
How does IBM Financial Transaction Manager for Digital Payments for Multi-Platform 3.2.0 through 3.2.7 have this vulnerability?
The vulnerability exists in the software version 3.2.0 through 3.2.7 of IBM Financial Transaction Manager for Digital Payments for Multi-Platform.
What is the severity of CVE-2020-5026?
CVE-2020-5026 has a severity score of 7.5, which is considered high.
How can a remote attacker exploit CVE-2020-5026?
A remote attacker can exploit CVE-2020-5026 to obtain sensitive information when a detailed technical error message is returned in the browser.
How can I fix CVE-2020-5026?
To fix CVE-2020-5026, you can apply the patch provided by IBM or upgrade to a version that is not affected.