CVE-2016-0222

Description

IBM Maximo Asset Management 7.6 before 7.6.0.3 IFIX001 allows remote authenticated users to bypass intended access restrictions and read arbitrary purchase-order work logs via unspecified vectors.

Risk Information

Base Score
4.3
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
EPSS Score
Exploitation Probability
0.108

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Maximo Asset Management 7.6.0.0Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.6.0.1Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.6.0.2Windows
Multiple Vulnerabilities are affected in Maximo Asset Management 7.6.0.3Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234