Metrics
Affected Vendors & Products
No advisories yet.
Solution
Remediation/Fixes IBM strongly recommends addressing the vulnerability now by upgrading to fixes from below links MAS Manage Patch Fix or Release Upgrade for MAS 9.0 Fix Central Upgrade for MAS 9.1 Fix Central
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7249416 |
|
Tue, 28 Oct 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 28 Oct 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Maximo Application Suite 9.0.0 through 9.0.15 and 9.1.0 through 9.1.4 could allow a remote attacker to bypass authentication mechanisms and gain unauthorized access to the application. | |
| Title | There is a vulnerability in the IBM Maximo Manage application in IBM Maximo Application Suite for Cognos Analytics | |
| First Time appeared |
Ibm
Ibm maximo Application Suite |
|
| Weaknesses | CWE-305 | |
| CPEs | cpe:2.3:a:ibm:maximo_application_suite:9.0.15:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:9.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:9.1.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:9.1.4:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm maximo Application Suite |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-10-28T16:57:09.538Z
Reserved: 2025-04-15T21:16:57.301Z
Link: CVE-2025-36386
Updated: 2025-10-28T16:57:05.997Z
Status : Received
Published: 2025-10-28T16:15:38.107
Modified: 2025-10-28T16:15:38.107
Link: CVE-2025-36386
No data.
OpenCVE Enrichment
No data.