PT-2018-5750 · Ibm · Ibm Maximo Asset Management

Publicado

2018-02-14

·

Atualizado

2018-03-09

·

CVE-2017-1499

CVSS v3.1

8.8

Alta

VetorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: IBM Maximo Asset Management versions 7.5 through 7.6
Description: The issue allows a remote attacker to include arbitrary files, potentially enabling the execution of arbitrary code on the vulnerable Web server.
Recommendations: For IBM Maximo Asset Management versions 7.5 through 7.6, update to a version that includes a fix for this issue to prevent arbitrary code execution on the Web server.

Correção

Unrestricted File Upload

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-1499

Produtos afetados

Ibm Maximo Asset Management