cbcvebase.
CVE-2015-5017
published 2016-01-03

CVE-2015-5017: IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX005, and 7.6.0 before 7.6.0.2 IFIX002; Maximo Asset Management 7.5.0 before 7.5.0.8…

medium5.4CVSS 3.0
AVNACLPRLUINSUCLILAN
IBM Maximo Asset Management 7.1 through 7.1.1.13, 7.5.0 before 7.5.0.8 IFIX005, and 7.6.0 before 7.6.0.2 IFIX002; Maximo Asset Management 7.5.0 before 7.5.0.8 IFIX005, 7.5.1, and 7.6.0 before 7.6.0.2 IFIX002 for SmartCloud Control Desk; and Maximo Asset Management 7.1 through 7.1.1.13 and 7.2 for Tivoli IT Asset Management for IT and certain other products allow remote authenticated users to bypass intended access restrictions and establish a login session by entering an expired password.

Affected

27 ranges· showing 25
VendorProductVersion rangeFixed in
ibmchange_and_configuration_management_database
ibmchange_and_configuration_management_database
ibmmaximo_asset_management
ibmmaximo_asset_management
ibmmaximo_asset_management
ibmmaximo_asset_management_essentials
ibmmaximo_asset_management_essentials
ibmmaximo_for_energy_optimization
ibmmaximo_for_government
ibmmaximo_for_government
ibmmaximo_for_life_sciences
ibmmaximo_for_life_sciences
ibmmaximo_for_life_sciences
ibmmaximo_for_nuclear_power
ibmmaximo_for_nuclear_power
ibmmaximo_for_oil_and_gas
ibmmaximo_for_oil_and_gas
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_utilities
ibmmaximo_for_utilities
ibmsmartcloud_control_desk
ibmsmartcloud_control_desk
ibmtivoli_asset_management_for_it
ibmtivoli_asset_management_for_it