cbcvebase.
CVE-2018-1524
published 2018-08-03

CVE-2018-1524: IBM Maximo Asset Management 7.6 through 7.6.3 installs with a default administrator account that a remote intruder could use to gain administrator access to…

high8.8CVSS 3.0
AVNACLPRLUINSUCHIHAH
IBM Maximo Asset Management 7.6 through 7.6.3 installs with a default administrator account that a remote intruder could use to gain administrator access to the system. This vulnerability is due to an incomplete fix for CVE-2015-4966. IBM X-Force ID: 142116.

Affected

19 ranges
VendorProductVersion rangeFixed in
ibmmaximo_asset_management7.6.0.0 – 7.6.3.0
ibmmaximo_for_aviation
ibmmaximo_for_aviation
ibmmaximo_for_aviation
ibmmaximo_for_aviation
ibmmaximo_for_aviation
ibmmaximo_for_life_sciences
ibmmaximo_for_nuclear_power
ibmmaximo_for_oil_and_gas
ibmmaximo_for_oil_and_gas
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_transportation
ibmmaximo_for_utilities
ibmsmartcloud_control_desk
ibmsmartcloud_control_desk