CVE-2026-18095: IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities
IBM Financial Transaction Manager (FTM) could allow a remote authenticated attacker to execute arbitrary code due to a buffer overflow.
Other sources
IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbitrary code due to a buffer overflow.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Financial Transaction Manager (FTM) for Red Hat OpenShiftto a version that resolves this vulnerability.Fixed in 4.0.11.0
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
An attacker must be remote and authenticated. The provided information does not identify any additional privileges, roles, or required application functionality.
What is the potential impact after successful exploitation?
Successful exploitation could allow the authenticated attacker to execute arbitrary code on the affected IBM Financial Transaction Manager deployment for RedHat OpenShift.