IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 255075.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-36579 | IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 255075. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 14 Jan 2025 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ibm
Ibm maximo Application Suite Ibm maximo Asset Management |
|
Weaknesses | NVD-CWE-Other | |
CPEs | cpe:2.3:a:ibm:maximo_application_suite:8.10:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:8.11:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_asset_management:7.6.1.3:*:*:*:*:*:*:* |
|
Vendors & Products |
Ibm
Ibm maximo Application Suite Ibm maximo Asset Management |

Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2024-08-05T15:52:20.030Z
Reserved: 2023-05-08T18:32:34.088Z
Link: CVE-2023-32335

Updated: 2024-08-02T15:10:24.953Z

Status : Analyzed
Published: 2024-03-13T10:15:07.413
Modified: 2025-01-14T20:10:32.063
Link: CVE-2023-32335

No data.

No data.