PT-2016-3753 · Ibm · Ibm Maximo Asset Management

Published

2016-01-02

·

Updated

2016-01-07

·

CVE-2015-7396

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions IBM Maximo Asset Management versions 7.5 through 7.5.0.8 IF5 IBM Maximo Asset Management versions 7.5.1 and earlier IBM Maximo Asset Management versions 7.6 through 7.6.0.0
Description The issue allows remote authenticated users to bypass intended access restrictions, and obtain sensitive information or modify data.
Recommendations For IBM Maximo Asset Management versions 7.5 through 7.5.0.8 IF5, update to version 7.5.0.8 IF6 or later. For IBM Maximo Asset Management versions 7.5.1 and earlier, update to version 7.5.1 or later and then apply the necessary fixes. For IBM Maximo Asset Management versions 7.6 through 7.6.0.0, update to version 7.6.0.1 FP1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7396

Affected Products

Ibm Maximo Asset Management