Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
ibm maximo asset management 7.6 vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2016-9984
IBM Maximo Asset Management 7.5 and 7.6 could allow a remote authenticated malicious user to execute arbitrary commands on the system as administrator. IBM X-Force ID: 120276.
Ibm Maximo Asset Management 7.6
Ibm Maximo Asset Management 7.5
6
CVSSv2
CVE-2017-1352
IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to inject commands into work orders that could be executed by another user that downloads the affected file. IBM X-Force ID: 126538.
Ibm Maximo Asset Management 7.6
Ibm Maximo Asset Management 7.5
4
CVSSv2
CVE-2016-0289
shiprec.xml in the SHIPREC application in IBM Maximo Asset Management 7.1 and 7.5 prior to 7.5.0.10 and 7.6 prior to 7.6.0.4 allows remote authenticated users to bypass intended item-selection restrictions via unspecified vectors.
Ibm Maximo Asset Management 7.6.0.3
Ibm Maximo Asset Management 7.5.0.0
Ibm Maximo Asset Management 7.5
Ibm Maximo Asset Management 7.1
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.8
Ibm Maximo Asset Management 7.5.0.7
Ibm Maximo Asset Management 7.5.0.6
Ibm Maximo Asset Management 7.5.0.5
Ibm Maximo Asset Management 7.6.0.2
Ibm Maximo Asset Management 7.6.0.0
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.5.0.4
Ibm Maximo Asset Management 7.5.0.2
1.9
CVSSv2
CVE-2017-1124
IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a local malicious user to obtain sensitive information using HTTP Header Injection. IBM Reference #: 1998053.
Ibm Maximo Asset Management 7.1.1.1
Ibm Maximo Asset Management 7.1.1.10
Ibm Maximo Asset Management 7.1.1.11
Ibm Maximo Asset Management 7.1.1.12
Ibm Maximo Asset Management 7.5.0.10
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.5.0.4
Ibm Maximo Asset Management 7.6.0.4
Ibm Maximo Asset Management 7.1.1
Ibm Maximo Asset Management 7.1.1.3
Ibm Maximo Asset Management 7.1.1.6
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6.0.3
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.5
Ibm Maximo Asset Management 7.5.0.7
Ibm Maximo Asset Management 7.6.0.5
Ibm Maximo Asset Management 7.1.1.7
Ibm Maximo Asset Management 7.1.1.8
Ibm Maximo Asset Management 7.6
Ibm Maximo Asset Management 7.6.0.0
3.5
CVSSv2
CVE-2016-0399
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1 up to and including 7.1.1.13, 7.5 prior to 7.5.0.9 IFIX007, and 7.6 prior to 7.6.0.5 FP005 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.
Ibm Maximo Asset Management 7.6.0.5
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.1.1.5
Ibm Maximo Asset Management 7.1.1.2
Ibm Maximo Asset Management 7.1.1.1
Ibm Maximo Asset Management 7.1
Ibm Maximo Asset Management 7.1.2
Ibm Maximo Asset Management 7.1.1.9
Ibm Maximo Asset Management 7.1.1.8
Ibm Maximo Asset Management 7.1.1.7
Ibm Maximo Asset Management 7.5.0.7
Ibm Maximo Asset Management 7.5.0.6
Ibm Maximo Asset Management 7.5.0.5
Ibm Maximo Asset Management 7.5.0.4
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.1.1.13
Ibm Maximo Asset Management 7.1.1.12
Ibm Maximo Asset Management 7.1.1.11
Ibm Maximo Asset Management 7.1.1.10
Ibm Maximo Asset Management 7.6.0.4
5
CVSSv2
CVE-2016-5987
IBM Maximo Asset Management 7.1 up to and including 7.1.1.13, 7.5 prior to 7.5.0.10 IF4, and 7.6 prior to 7.6.0.5 IF3 allows remote malicious users to obtain sensitive information via a crafted HTTP request that triggers construction of a runtime error message.
Ibm Maximo Asset Management 7.5.0.0
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6.0.3
Ibm Maximo Asset Management 7.5.0.4
Ibm Maximo Asset Management 7.5.0.6
Ibm Maximo Asset Management 7.1.1.12
Ibm Maximo Asset Management 7.1.1.2
Ibm Maximo Asset Management 7.1.1.9
Ibm Maximo Asset Management 7.6.0.4
Ibm Maximo Asset Management 7.1.0.0
Ibm Maximo Asset Management 7.1.1
Ibm Maximo Asset Management 7.5.0.8
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.1.1.1
Ibm Maximo Asset Management 7.1.1.10
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.10
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.1.1.3
Ibm Maximo Asset Management 7.1.1.5
Ibm Maximo Asset Management 7.1.1.6
3.5
CVSSv2
CVE-2016-5905
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5 prior to 7.5.0.10 IF3 and 7.6 prior to 7.6.0.5 IF2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
Ibm Maximo Asset Management 7.5.0.0
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6.0.3
Ibm Maximo Asset Management 7.5.0.5
Ibm Maximo Asset Management 7.5.0.6
Ibm Maximo Asset Management 7.5.0.7
Ibm Maximo Asset Management 7.5.0.8
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.6.0.0
Ibm Maximo Asset Management 7.6.0.4
Ibm Maximo Asset Management 7.6.0.2
Ibm Maximo Asset Management 7.5.0.4
5
CVSSv2
CVE-2016-0393
IBM Maximo Asset Management 7.5 prior to 7.5.0.10-TIV-MBS-IFIX002 and 7.6 prior to 7.6.0.5-TIV-MAMMT-FP001 allows remote malicious users to obtain sensitive URL information by reading log files.
Ibm Maximo Asset Management 7.5.0.6
Ibm Maximo Asset Management 7.5.0.5
Ibm Maximo Asset Management 7.5.0.4
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.10
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.0
Ibm Maximo Asset Management 7.5.0.8
Ibm Maximo Asset Management 7.5.0.7
Ibm Maximo Asset Management 7.6.0.4
Ibm Maximo Asset Management 7.6.0.3
Ibm Maximo Asset Management 7.6.0.2
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6.0.0
Ibm Maximo Asset Management 7.6.0.5
4
CVSSv2
CVE-2015-5051
IBM Maximo Asset Management 7.5 prior to 7.5.0.8 IF6 and 7.6 prior to 7.6.0.2 IF1 and Maximo Asset Management 7.5 prior to 7.5.0.8 IF6, 7.5.1, and 7.6 prior to 7.6.0.2 IF1 for SmartCloud Control Desk allow remote authenticated users to bypass intended access restrictions on query...
Ibm Smartcloud Control Desk 7.6
Ibm Smartcloud Control Desk 7.5
Ibm Maximo For Transportation 7.5
Ibm Maximo For Nuclear Power 7.5
Ibm Maximo For Government 7.5
Ibm Maximo Asset Management Essentials 7.5
Ibm Maximo For Utilities 7.5
Ibm Maximo For Life Sciences 7.6
Ibm Maximo Asset Management 7.6
Ibm Maximo For Oil And Gas 7.5
Ibm Maximo For Life Sciences 7.5
Ibm Maximo Asset Management Essentials 7.6
Ibm Maximo Asset Management 7.5
4
CVSSv2
CVE-2017-1357
IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to manipulate work orders to forge emails which could be used to conduct further advanced attacks. IBM X-Force ID: 126684.
Ibm Maximo Asset Management Essentials 7.5.0.10
Ibm Maximo Asset Management Essentials 7.6.0.7
Ibm Maximo Asset Management Essentials 7.6.0.6
Ibm Maximo Asset Management Essentials 7.6.0.5
Ibm Maximo Asset Management 7.5.0.8
Ibm Maximo Asset Management 7.5.0.9
Ibm Maximo Asset Management 7.5.0.10
Ibm Maximo Asset Management 7.6.0.7
Ibm Maximo Asset Management Essentials 7.5.0.2
Ibm Maximo Asset Management Essentials 7.5.0.3
Ibm Maximo Asset Management Essentials 7.5.0.4
Ibm Maximo Asset Management Essentials 7.5.0.5
Ibm Maximo Asset Management Essentials 7.6.0.0
Ibm Maximo Asset Management 7.5.0.0
Ibm Maximo Asset Management 7.5.0.1
Ibm Maximo Asset Management 7.5.0.2
Ibm Maximo Asset Management 7.5.0.3
Ibm Maximo Asset Management 7.6.0.2
Ibm Maximo Asset Management 7.6.0.1
Ibm Maximo Asset Management 7.6.0.0
Ibm Maximo Asset Management Essentials 7.5.0.0
Ibm Maximo Asset Management Essentials 7.5.0.7
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
man-in-the-middle
CVE-2024-34558
CVE-2024-32674
CVE-2024-34351
XPath injection
CVE-2023-45866
CVE-2024-25528
CVE-2024-25517
path traversal
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »