Fiche vulnérabilité
CVE-2021-38924 : faille moyenne IBM Maximo Asset Management (CVSS 5.3)
Description
IBM Maximo Asset Management 7.6.1.1 and 7.6.1.2 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 210163.
En bref
- Sévérité
- Moyenne (CVSS 5.3)
- Vecteur CVSS
- CVSS:3.0/A:N/C:L/UI:N/AV:N/I:N/AC:L/S:U/PR:N/E:U/RC:C/RL:O
- Exploitation active
- Non signalée par la CISA
- Publication
- 14 sept. 2022
- Dernière mise à jour
- 16 sept. 2024
Produits concernés
- IBM Maximo Asset Management