CVE-2019-4364
published 2019-06-19CVE-2019-4364: IBM Maximo Asset Management 7.6 is vulnerable to CSV injection, which could allow a remote authenticated attacker to execute arbirary commands on the system…
high8CVSS 3.1
AVNACLPRLUIRSUCHIHAH
IBM Maximo Asset Management 7.6 is vulnerable to CSV injection, which could allow a remote authenticated attacker to execute arbirary commands on the system. IBM X-Force ID: 161680.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | control_desk | — | — |
| ibm | control_desk | — | — |
| ibm | maximo_asset_management | — | — |
| ibm | maximo_for_aviation | — | — |
| ibm | maximo_for_aviation | — | — |
| ibm | maximo_for_aviation | — | — |
| ibm | maximo_for_aviation | — | — |
| ibm | maximo_for_aviation | — | — |
| ibm | maximo_for_life_sciences | — | — |
| ibm | maximo_for_nuclear_power | — | — |
| ibm | maximo_for_oil_and_gas | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_transportation | — | — |
| ibm | maximo_for_utilities | — | — |