IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX001, and 7.6.0 before 7.6.0.0 IFIX005 does not prevent caching of HTTPS responses, which allows physically proximate attackers to obtain sensitive local-cache information by leveraging an unattended workstation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published: 2015-07-01T10:00:00

Updated: 2024-08-06T05:02:43.404Z

Reserved: 2015-02-19T00:00:00

Link: CVE-2015-1951

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-07-01T10:59:01.100

Modified: 2016-11-30T03:00:19.310

Link: CVE-2015-1951

cve-icon Redhat

No data.