GHSA-fj39-4fcg-5f6vMediumCVSS 5.4
IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to open redirect in...
🔗 CVE IDs covered (1)
📋 Description
IBM Financial Transaction Manager (FTM) for RedHat OpenShift is vulnerable to open redirect in the PMP HostHeaderFilter (HostHeaderFilter.java:151). An unauthenticated attacker can craft a request with a manipulated Host header to redirect authenticated operators to attacker-controlled sites, enabling credential phishing.