CVE-2023-49880

In the Message Entry and Repair (MER) facility of IBM Financial Transaction Manager for SWIFT Services 3.2.4 the sending address and the message type of FIN messages are assumed to be immutable. However, an attacker might modify these elements of a business transaction. IBM X-Force ID: 273183.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*

History

03 Jan 2024, 21:03

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7101167 - () https://www.ibm.com/support/pages/node/7101167 - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - VDB Entry, Vendor Advisory
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CPE cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*
First Time Ibm
Ibm financial Transaction Manager

25 Dec 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-25 03:15

Updated : 2024-01-03 21:03


NVD link : CVE-2023-49880

Mitre link : CVE-2023-49880


JSON object : View

Products Affected

ibm

  • financial_transaction_manager