Lucene search

K
cveIbmCVE-2016-0232
HistoryFeb 15, 2016 - 11:59 p.m.

CVE-2016-0232

2016-02-1523:59:01
CWE-200
ibm
web.nvd.nist.gov
27
ibm
ftm
ach
check
cps
security
vulnerability
cve-2016-0232
nvd

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

AI Score

4.1

Confidence

High

EPSS

0.002

Percentile

59.0%

IBM Financial Transaction Manager (FTM) for ACH Services, Check Services and Corporate Payment Services (CPS) 3.0.0 before FP12 allows remote authenticated users to obtain sensitive information by reading README files.

Affected configurations

Nvd
Node
ibmfinancial_transaction_managerMatch3.0.0.0ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.1ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.2ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.3ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.4ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.5ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.6ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.7ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.8ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.9ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.10ach_services
OR
ibmfinancial_transaction_managerMatch3.0.0.11ach_services
Node
ibmfinancial_transaction_managerMatch3.0.0.0check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.1check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.2check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.3check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.4check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.5check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.6check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.7check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.8check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.9check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.10check_services
OR
ibmfinancial_transaction_managerMatch3.0.0.11check_services
Node
ibmfinancial_transaction_managerMatch3.0.0.0cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.1cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.2cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.3cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.4cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.5cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.6cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.7cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.8cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.9cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.10cps_services
OR
ibmfinancial_transaction_managerMatch3.0.0.11cps_services
VendorProductVersionCPE
ibmfinancial_transaction_manager3.0.0.0cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.0:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.1cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.1:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.2cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.2:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.3cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.3:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.4cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.4:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.5cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.5:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.6cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.6:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.7cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.7:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.8cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.8:*:*:*:*:ach_services:*:*
ibmfinancial_transaction_manager3.0.0.9cpe:2.3:a:ibm:financial_transaction_manager:3.0.0.9:*:*:*:*:ach_services:*:*
Rows per page:
1-10 of 361

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

LOW

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

AI Score

4.1

Confidence

High

EPSS

0.002

Percentile

59.0%

Related for CVE-2016-0232