Description


IBM Maximo Asset Management 7.6.1.1 and 7.6.1.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 210163.

Related CPE's


a

ibm

maximo_application_suite

2

a

ibm

maximo_asset_management

2

Weaknesses



CWE-209

CVSS impact metrics


CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

7.5 · High

  • CVSS V3.1

  • CVSS V3.0

  • CVSS V2.0

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2022-09-14T17:15:10.053

2 years ago

Last modified

2023-08-08T14:22:24.967

1 year ago