6
CVSSv2

CVE-2017-1352

Published: 12/09/2017 Updated: 21/09/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.5 | Impact Score: 3.4 | Exploitability Score: 2.1
VMScore: 534
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to inject commands into work orders that could be executed by another user that downloads the affected file. IBM X-Force ID: 126538.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm maximo asset management 7.6

ibm maximo asset management 7.5