Vulnerability Bulletins

IBM Security Bulletin: IBM Maximo Asset Management is vulnerable to SQL injection (CVE-2015-7448)

   
Affected software IBM
 
IBM Maximo Asset Management is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements, which could allow the attacker to view, add, modify or delete information in the back-end database. CVE(s): CVE-2015-7448Affected product(s) and affected version(s):1. Maximo Asset Management 7.6, 7.5, 7.1 2. Maximo Asset Management Essentials 7.5, 7.1 3. Maximo for Energy Optimization 7.1 4. Maximo for Government 7.5, 7.1 5. Maximo for Nuclear Power 7.5, 7.1 6. Maximo for

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_maximo_asset_management_is_vulnerable_to_sql_injection_cve_2015_7448?lang=en_us