📦 Maximo Asset Management

by Ibm

🔍 What is Maximo Asset Management?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-20509

CRITICAL CVSS 9.8 Aug 12, 2021

CVE-2021-20509 is a CSV injection vulnerability in IBM Maximo Asset Management that allows remote attackers to execute arbitrary commands on affected systems through malicious CSV file uploads. This a...

CVE-2020-4493

CRITICAL CVSS 9.8 Oct 5, 2020

CVE-2020-4493 is an authentication bypass vulnerability in IBM Maximo Asset Management that allows unauthenticated attackers to execute arbitrary commands via specially crafted HTTP requests. This aff...

CVE-2021-38935

HIGH CVSS 7.5 Feb 18, 2022

IBM Maximo Asset Management 7.6.1.2 does not enforce strong password policies by default, allowing weak passwords that can be easily guessed or brute-forced. This vulnerability affects all users of IB...

CVE-2024-45077

MEDIUM CVSS 6.5 Jan 24, 2025

This vulnerability allows authenticated low-privileged users to upload restricted file types to IBM Maximo Asset Management by appending a dot to the filename. The exploit specifically affects Windows...