CVE Published: 20/12/2022 |
CVE Updated: 03/08/2024 |
CVE Year: 2022 Source: ibm |
Vendor: IBM |
Product: Financial Transaction Manager Status : PUBLISHED
CVE-2022-43872 Description
IBM Financial Transaction Manager 3.2.4 authorization checks are done incorrectly for some HTTP requests which allows getting unauthorized technical information (e.g. event log entries) about the FTM SWIFT system. IBM X-Force ID: 239708.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N