CVE-2016-6072
- EPSS 0.23%
- Veröffentlicht 01.02.2017 20:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a truste...
CVE-2016-5896
- EPSS 0.19%
- Veröffentlicht 01.02.2017 20:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
IBM Maximo Asset Management could disclose sensitive information from a stack trace after submitting incorrect login onto Cognos browser.
CVE-2016-0222
- EPSS 0.11%
- Veröffentlicht 14.03.2016 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
IBM Maximo Asset Management 7.6 before 7.6.0.3 IFIX001 allows remote authenticated users to bypass intended access restrictions and read arbitrary purchase-order work logs via unspecified vectors.
CVE-2015-7448
- EPSS 0.13%
- Veröffentlicht 12.03.2016 15:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
SQL injection vulnerability in IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.9 IFIX003, and 7.6.0 before 7.6.0.3 IFIX001; Maximo Asset Management 7.5.0 before 7.5.0.9 IFIX003, 7.5.1, and 7.6.0 before 7.6.0.3 IFIX001 for SmartCl...
CVE-2015-7487
- EPSS 0.05%
- Veröffentlicht 27.01.2016 05:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.9 IFIX002, and 7.6.0 before 7.6.0.3 IFIX001; Maximo Asset Management 7.5.0 before 7.5.0.9 IFIX002, 7.5.1, and 7.6.0 before 7.6.0.3 IFIX001 for SmartCloud Control Desk; and Maximo As...
CVE-2015-5051
- EPSS 0.14%
- Veröffentlicht 03.01.2016 05:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
IBM Maximo Asset Management 7.5 before 7.5.0.8 IF6 and 7.6 before 7.6.0.2 IF1 and Maximo Asset Management 7.5 before 7.5.0.8 IF6, 7.5.1, and 7.6 before 7.6.0.2 IF1 for SmartCloud Control Desk allow remote authenticated users to bypass intended access...
CVE-2015-5017
- EPSS 0.11%
- Veröffentlicht 03.01.2016 05:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX005, and 7.6.0 before 7.6.0.2 IFIX002; Maximo Asset Management 7.5.0 before 7.5.0.8 IFIX005, 7.5.1, and 7.6.0 before 7.6.0.2 IFIX002 for SmartCloud Control Desk; and Maximo As...
CVE-2015-7452
- EPSS 0.16%
- Veröffentlicht 02.01.2016 21:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
IBM Maximo Asset Management 7.5 before 7.5.0.9 FP9 and 7.6 before 7.6.0.3 FP3 and Maximo Asset Management 7.5 before 7.5.0.9 FP9, 7.5.1, and 7.6 before 7.6.0.3 FP3 for SmartCloud Control Desk allow remote authenticated users to obtain sensitive infor...
CVE-2015-7396
- EPSS 0.13%
- Veröffentlicht 02.01.2016 21:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Scheduler in IBM Maximo Asset Management 7.5 before 7.5.0.8 IF6 and 7.6 before 7.6.0.1 FP1 and Maximo Asset Management 7.5 before 7.5.0.8 IF6, 7.5.1, and 7.6 before 7.6.0.1 FP1 for SmartCloud Control Desk allows remote authenticated users to bypa...
CVE-2015-7451
- EPSS 0.17%
- Veröffentlicht 02.01.2016 05:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5 before 7.5.0.9 IF2 and 7.6 before 7.6.0.3 FP3 and Maximo Asset Management 7.5 before 7.5.0.9 IF2, 7.5.1, and 7.6 before 7.6.0.3 FP3 for SmartCloud Control Desk allows remote ...