cbcvebase.
CVE-2015-5016
published 2018-03-27

CVE-2015-5016: IBM Maximo Asset Management 7.1, 7.5, and 7.6; Maximo Asset Management Essentials 7.1 and 7.5; Control Desk 7.5 and 7.6; Tivoli Asset Management for IT 7.1 and…

medium4.3CVSS 3.0
AVNACLPRLUINSUCLINAN
IBM Maximo Asset Management 7.1, 7.5, and 7.6; Maximo Asset Management Essentials 7.1 and 7.5; Control Desk 7.5 and 7.6; Tivoli Asset Management for IT 7.1 and 7.2; and certain other IBM products allow remote authenticated users to bypass intended access restrictions and read arbitrary ticket worklog entries via unspecified vectors. IBM X-Force ID: 106460.

Affected

29 ranges· showing 25
VendorProductVersion rangeFixed in
ibmchange_and_configuration_management_database
ibmchange_and_configuration_management_database
ibmcontrol_desk
ibmcontrol_desk
ibmmaximo_asset_management
ibmmaximo_asset_management
ibmmaximo_asset_management
ibmmaximo_asset_management_essentials
ibmmaximo_asset_management_essentials
ibmmaximo_for_aviation
ibmmaximo_for_energy_optimization
ibmmaximo_for_government
ibmmaximo_for_government
ibmmaximo_for_life_sciences
ibmmaximo_for_life_sciences
ibmmaximo_for_life_sciences
ibmmaximo_for_nuclear_power
ibmmaximo_for_nuclear_power
ibmmaximo_for_oil_and_gas
ibmmaximo_for_oil_and_gas
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_utilities
ibmmaximo_for_utilities