CVE-2012-6356: Medium severity ibm maximo asset management vulnerability
Published Feb 20, 2013
·Updated
IBM Maximo Asset Management 7.5, Maximo Asset Management Essentials 7.5, and SmartCloud Control Desk 7.5 allow remote authenticated users to gain privileges via vectors related to an import operation.
Affected Software
3 affected components
IBM Maximo Asset Management=7.5.0.0
IBM Maximo Asset Management Essentials=7.5.0.0
IBM SmartCloud Control Desk=7.5.0.0
Event History
Feb 20, 2013
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6356?
CVE-2012-6356 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2012-6356?
To fix CVE-2012-6356, you should apply the latest patches provided by IBM for the affected software versions.
3
Who is affected by CVE-2012-6356?
CVE-2012-6356 affects remote authenticated users of IBM Maximo Asset Management 7.5, Maximo Asset Management Essentials 7.5, and SmartCloud Control Desk 7.5.
4
What types of attacks can exploit CVE-2012-6356?
CVE-2012-6356 can be exploited to gain unauthorized privileges via an import operation.
5
Is there a workaround for CVE-2012-6356?
Currently, there are no reported workarounds for mitigating CVE-2012-6356 aside from patching the software.