CVE-2016-0268: IBM Financial Transaction Manager
Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.
XML external entity (XXE) vulnerability in IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, Financial Transaction Manager (FTM) for Check Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, and Financial Transaction Manager (FTM) for Corporate Payment Services (CPS) for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013 allows remote authenticated users to obtain sensitive information via crafted XML data. IBM X-Force ID: 110915.
Affected products
- IBM Financial Transaction Manager: from 3.0.0.0, up to and including 3.0.0.12; version 2.1.1.2 only
Published 2018-03-09. Last modified 2026-06-17.