CVE-2013-6741: Infoleak
IBM Maximo Asset Management 7.x before 7.1.1.7 LAFIX.20140319-0837 and 7.5.x before 7.5.0.5 IFIX006; SmartCloud Control Desk 7.x before 7.5.0.3 and 7.5.1.x before 7.5.1.2; and Tivoli IT Asset Management for IT, Tivoli Service Request Manager, Maximo Service Desk, and Change and Configuration Management Database (CCMDB) 7.x before 7.1.1.7 LAFIX.20140319-0837 allow remote authenticated users to obtain potentially sensitive stack-trace information by triggering a Birt error.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6741?
CVE-2013-6741 is classified as a moderate severity vulnerability.
How do I fix CVE-2013-6741?
To fix CVE-2013-6741, upgrade IBM Maximo Asset Management to version 7.1.1.7 or later, or 7.5.0.5 or later.
What software is affected by CVE-2013-6741?
CVE-2013-6741 affects multiple IBM products including IBM Maximo Asset Management versions before 7.1.1.7 and 7.5.0.5.
What types of vulnerabilities are associated with CVE-2013-6741?
CVE-2013-6741 could allow unauthorized access or manipulation of sensitive data.
Is there a workaround for CVE-2013-6741?
There are no documented workarounds for CVE-2013-6741; the recommended solution is to apply the necessary patch.