PT-2026-28131 · Ibm · Ibm Maximo Application Suite+1
Publicado
2026-03-25
·
Atualizado
2026-03-26
·
CVE-2025-14684
CVSS v3.1
4.0
Média
| Vetor | AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Maximo Application Suite - Monitor Component versions 9.1, 9.0, 8.11, and 8.10
Description
The software allows an unauthorized user to inject data into log messages because of insufficient sanitization of special characters when writing to log files. This issue is referred to as Log Forging.
Recommendations
Update to a newer version that contains a fix for this vulnerability.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Maximo Application Suite
Monitorr