CVE-2023-49880

In the Message Entry and Repair (MER) facility of IBM Financial Transaction Manager for SWIFT Services 3.2.4 the sending address and the message type of FIN messages are assumed to be immutable. However, an attacker might modify these elements of a business transaction. IBM X-Force ID: 273183.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*

History

03 Jan 2024, 21:03

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:ibm:financial_transaction_manager:3.2.4:*:*:*:*:swift_services:*:*
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/273183 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/7101167 - () https://www.ibm.com/support/pages/node/7101167 - Vendor Advisory
First Time Ibm financial Transaction Manager
Ibm

26 Dec 2023, 20:34

Type Values Removed Values Added
Summary
  • (es) En la función Message Entry and Repair (MER) de IBM Financial Transaction Manager para SWIFT Services 3.2.4, se supone que la dirección de envío y el tipo de mensaje de los mensajes FIN son inmutables. Sin embargo, un atacante podría modificar estos elementos de una transacción comercial. ID de IBM X-Force: 273183.

25 Dec 2023, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-12-25 03:15

Updated : 2024-01-03 21:03


NVD link : CVE-2023-49880

Mitre link : CVE-2023-49880

CVE.ORG link : CVE-2023-49880


JSON object : View

Products Affected

ibm

  • financial_transaction_manager