Payments Director in IBM Financial Transaction Manager (FTM) for ACH Services, Check Services, and Corporate Payment Services (CPS) 3.0.0.x before fp0015 and 3.0.1.0 before iFix0002 allows remote authenticated users to conduct clickjacking attacks via a crafted web site.
References
Link | Resource |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21989060 | Patch Vendor Advisory |
http://www-01.ibm.com/support/docview.wss?uid=swg1PI67537 | Not Applicable |
http://www-01.ibm.com/support/docview.wss?uid=swg1PI64064 | Not Applicable |
http://www-01.ibm.com/support/docview.wss?uid=swg1PI64063 | Not Applicable |
http://www.securityfocus.com/bid/92633 |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2016-10-28 18:59
Updated : 2016-11-28 12:06
NVD link : CVE-2016-3060
Mitre link : CVE-2016-3060
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
ibm
- financial_transaction_manager