CVE-2015-6747: Basware Banking

Medium severity, CVSS 5.0. EPSS: 1.2% chance of exploitation in the next 30 days.

Basware Banking (Maksuliikenne) 8.90.07.X does not properly prevent access to private keys, which allows remote attackers to spoof communications with banks via unspecified vectors. NOTE: this identifier was SPLIT from CVE-2015-0942 per ADT2 due to different vulnerability types. NOTE: this vulnerability exists because of an incorrect fix for CVE-2015-6746.

Affected products

  • Basware Banking: up to and including 8.90.07

Published 2015-08-31. Last modified 2026-06-17.