IBM Security Bulletin: IBM Maximo Asset Management could allow an authenticated user to view query results that the user should not have access to view due to improper access control (CVE-2015-5051)
|
Información sobre el sistema
|
|
|
Software afectado |
IBM |
Descripción
|
IBM Maximo Asset Management contains a vulnerability which could allow an authenticated user to view query results that the user should not have access to view due to improper access control. This vulnerability could allow a local attacker to compromise data integrity. The vulnerability affects Maximo Asset Management, Maximo Asset Management Essentials, Maximo Industry Solutions (including Maximo for Government, Maximo for Nuclear Power, Maximo for Transportation, Maximo for Life Sciences,
More info:
https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_maximo_asset_management_could_allow_an_authenticated_user_to_view_query_results_that_the_user_should_not_have_access_to_view_due_to_improper_access_control_cve_2015_5051? |
Identificadores estándar
|
Propiedad |
Valor |
CVE |
CVE-2015-5051 ,CVE-2015-7450 ,CVE-2015-7438 ,CVE-2015-7437 ,CVE-2015-4872 ,CVE-2015-4734 ,CVE-2015-5006 and CVE-2015-5204. |