CVE-2011-1395: XSS
Cross-site scripting (XSS) vulnerability in imicon.jsp in IBM Maximo Asset Management and Asset Management Essentials 6.2, 7.1, and 7.5 allows remote attackers to inject arbitrary web script or HTML via the controlid parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1395?
CVE-2011-1395 has a moderate severity level due to the potential for cross-site scripting attacks.
How do I fix CVE-2011-1395?
To fix CVE-2011-1395, ensure you apply the latest security patches provided by IBM for the affected versions of Maximo Asset Management.
What software versions are affected by CVE-2011-1395?
CVE-2011-1395 affects IBM Maximo Asset Management and Asset Management Essentials versions 6.2, 7.1, and 7.5.
What type of vulnerability is CVE-2011-1395?
CVE-2011-1395 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Who can exploit CVE-2011-1395?
Remote attackers can exploit CVE-2011-1395 to potentially compromise affected IBM Maximo systems.