CVE-2026-18124: IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities
IBM Financial Transaction Manager (FTM) could allow a local attacker to obtain sensitive information due to insufficiently protected credentials.
Other sources
IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information due to insufficiently protected credentials.
— MITRE
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Financial Transaction Manager (FTM) for RedHat OpenShiftto a version that resolves this vulnerability.Fixed in 4.0.11.0
Event History
Frequently Asked Questions
Who could exploit this issue?
A local attacker with access to the affected IBM Financial Transaction Manager for RedHat OpenShift environment could potentially obtain sensitive information.
What is the underlying condition that enables exposure?
The issue is caused by insufficient protection of credentials, which may allow sensitive information to be obtained by a local attacker.