ibm financial-transaction-manager CVE-2020-5003 is a vulnerability in IBM Financial Transaction Manager
Published on June 11, 2021

IBM Financial Transaction Manager 3.2.4 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A remote attacker could exploit this vulnerability to expose sensitive information or consume memory resources. IBM X-Force ID: 192956.

NVD


Products Associated with CVE-2020-5003

Want to know whenever a new CVE is published for IBM Financial Transaction Manager? stack.watch will email you.

 

Affected Versions

IBM Financial Transaction Manager Version 3.2.4 is affected by CVE-2020-5003

Exploit Probability

EPSS
0.48%
Percentile
64.79%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.