IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4 returns the product version and release information on the login dialog. This information could be used in further attacks against the system.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://www.ibm.com/support/pages/node/6371260 | patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/191113 | vdb entry vendor advisory |