CVE-2016-0272: IBM Financial Transaction Manager

High severity, CVSS 8.0. EPSS: 0.7% chance of exploitation in the next 30 days.

Cross-site request forgery (CSRF) vulnerability in IBM Financial Transaction Manager (FTM) for ACH Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, Financial Transaction Manager (FTM) for Check Services for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013, and Financial Transaction Manager (FTM) for Corporate Payment Services (CPS) for Multi-Platform 2.1.1.2 and 3.0.0.x before fp0013 allows remote attackers to hijack the authentication of arbitrary users via unspecified vectors. IBM X-Force ID: 111052.

Affected products

  • IBM Financial Transaction Manager: from 3.0.0.0, up to and including 3.0.0.12; version 2.1.1.2 only

Published 2018-03-09. Last modified 2026-06-17.