7.5
CVE-2026-18074
- EPSS 0.41%
- Veröffentlicht 22.09.2026 21:45:23
- Zuletzt bearbeitet 07.10.2026 16:48:15
- Erkennungen
IBM Financial Transaction Manager (FTM) is Impacted by Multiple Vulnerabilities
IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to perform unauthorized actions due to improper authentication and missing authorization.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Financial Transaction Manager SwPlatform - Version >= 4.0.7.0 < 4.0.11.0
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update - SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_1 SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_2 SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_3 SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_4 SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_5 SwPlatform -
Ibm ≫ Financial Transaction Manager Version 4.0.6.0 Update interim_fix_6 SwPlatform -
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.41% | 0.327 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
| IBM | 8.2 | 3.9 | 4.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
https://www.ibm.com/support/pages/node/7288641