CVE-2023-49880

In the Message Entry and Repair (MER) facility of IBM Financial Transaction Manager for SWIFT Services 3.2.4 the sending address and the message type of FIN messages are assumed to be immutable. However, an attacker might modify these elements of a business transaction. IBM X-Force ID: 273183.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*

History

21 Nov 2024, 08:33

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7101167 - Vendor Advisory () https://www.ibm.com/support/pages/node/7101167 - Vendor Advisory

03 Jan 2024, 21:03

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7101167 - () https://www.ibm.com/support/pages/node/7101167 - Vendor Advisory
First Time Ibm financial Transaction Manager
Ibm
CPE cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*
CWE NVD-CWE-noinfo

26 Dec 2023, 20:34

Type Values Removed Values Added
Summary
  • (es) En la función Message Entry and Repair (MER) de IBM Financial Transaction Manager para SWIFT Services 3.2.4, se supone que la dirección de envío y el tipo de mensaje de los mensajes FIN son inmutables. Sin embargo, un atacante podría modificar estos elementos de una transacción comercial. ID de IBM X-Force: 273183.

25 Dec 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-25 03:15

Updated : 2024-11-21 08:33


NVD link : CVE-2023-49880

Mitre link : CVE-2023-49880

CVE.ORG link : CVE-2023-49880


JSON object : View

Products Affected

ibm

  • financial_transaction_manager