Ibm

Transformation Extender Advanced

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 06.10.2025 14:47:55
  • Zuletzt bearbeitet 06.10.2025 15:16:01

IBM Standards Processing Engine 10.0.1.10 could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe java deserialization. By sending specially crafted input, an attacker could exploit this vulnerability to execute arb...

  • EPSS 0.04%
  • Veröffentlicht 01.10.2025 17:15:37
  • Zuletzt bearbeitet 03.10.2025 17:38:09

IBM Transformation Extender Advanced 10.0.1 does not invalidate session after logout which could allow an authenticated user to impersonate another user on the system.

  • EPSS 0.04%
  • Veröffentlicht 01.10.2025 17:15:37
  • Zuletzt bearbeitet 03.10.2025 17:38:45

IBM Transformation Extender Advanced 10.0.1 does not require that users should have strong passwords by default, which makes it easier for attackers to compromise user accounts.

  • EPSS 0.01%
  • Veröffentlicht 01.10.2025 17:15:37
  • Zuletzt bearbeitet 03.10.2025 17:39:03

IBM Transformation Extender Advanced 10.0.1 could allow a local user to perform unauthorized actions due to improper access controls.

  • EPSS 0.01%
  • Veröffentlicht 01.10.2025 16:15:51
  • Zuletzt bearbeitet 03.10.2025 17:37:34

IBM Transformation Extender Advanced 10.0.1 stores potentially sensitive information in log files that could be read by a local user.

  • EPSS 0.12%
  • Veröffentlicht 21.10.2021 17:15:07
  • Zuletzt bearbeitet 21.11.2024 06:01:57

IBM Standards Processing Engine (IBM Transformation Extender Advanced 9.0 and 10.0) does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to get the cookie values by sending a http:// link to a user or by...

  • EPSS 0.46%
  • Veröffentlicht 21.02.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:22:19

IBM Financial Transaction Manager for ACH Services for Multi-Platform (IBM Control Center 6.0 and 6.1, IBM Financial Transaction Manager 3.0.2, 3.0.3, 3.0.4, and 3.1.0, IBM Transformation Extender Advanced 9.0) is vulnerable to a XML External Entity ...