CVE-2015-6742: Basware Banking
Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.
Basware Banking (Maksuliikenne) before 8.90.07.X uses a hardcoded password for the ANCO account, which allows remote authenticated users to bypass intended access restrictions by leveraging knowledge of this password. NOTE: this identifier was SPLIT from CVE-2015-0942 per ADT2 and ADT3 due to different vulnerability types and different affected versions.
Affected products
- Basware Banking: up to and including 8.90.07
Published 2015-08-31. Last modified 2026-06-17.