CVE-2015-6746: Basware Banking
Low severity, CVSS 2.1. EPSS: 0.6% chance of exploitation in the next 30 days.
Basware Banking (Maksuliikenne) before 8.90.07.X stores private keys in plaintext in the SQL database, which allows remote attackers to spoof communications with banks via unspecified vectors. NOTE: this identifier was SPLIT from CVE-2015-0942 per ADT2 due to different vulnerability types.
Affected products
- Basware Banking: up to and including 8.90.07
Published 2015-08-31. Last modified 2026-06-17.