Vulnerability Bulletins

IBM Security Bulletin: IBM Maximo Asset Management could allow an authenticated user to view work logs during purchase orders that they should not have access to (CVE-2016-0222)

   
Affected software IBM
 
IBM Maximo Asset Management could allow an authenticated user to view work logs during purchase orders that they should not have access to. CVE(s): CVE-2016-0222Affected product(s) and affected version(s):This vulnerability affects the following versions of the IBM Maximo Asset Management core product, and all other IBM Maximo Industry Solution and IBM Control Desk products, regardless of their own version, if they are currently installed on top of a affected IBM Maximo Asset Management. *

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_maximo_asset_management_could_allow_an_authenticated_user_to_view_work_logs_during_purchase_orders_that_they_should_not_have_access_to_cve_2016_0222?lang=en_us