Vulnerability Bulletins

IBM Security Bulletin: IBM Maximo Asset Management could allow an authenticated user to select items within the system that they should not have permission to do so (CVE-2016-0289)

   
Affected software IBM
 
IBM Maximo Asset Management could allow an authenticated user to select items within the system that they should not have permission to do so. CVE(s): CVE-2016-0289Affected product(s) and affected version(s):This vulnerability affects the following versions of the IBM Maximo Asset Management core product, and all other IBM Maximo Industry Solution and IBM Control Desk products, regardless of their own version, if they are currently installed on top of a affected IBM Maximo Asset Management. *

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_maximo_asset_management_could_allow_an_authenticated_user_to_select_items_within_the_system_that_they_should_not_have_permission_to_do_so_cve_2016_0289?lang=en_us