CVE-2015-0107

Description

IBM Tivoli IT Asset Management for IT, Tivoli Service Request Manager, and Change and Configuration Management Database 7.1 through 7.1.1.8 and 7.2 and Maximo Asset Management and Maximo Industry Solutions 7.1 through 7.1.1.8, 7.5 before 7.5.0.7 IFIX003, and 7.6 before 7.6.0.0 IFIX002 allow remote authenticated users to conduct directory traversal attacks via unspecified vectors.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
7.172

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.1Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.2Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.5Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.6Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.7Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.1.1.8Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234