First published: Thu Oct 10 2019(Updated: )
IBM Maximo Anywhere does not have device root detection would could result in an attacker gaining sensitive information about the device.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Maximo Anywhere | =7.6.0.0 | |
IBM Maximo Anywhere | =7.6.1.0 | |
IBM Maximo Anywhere | =7.6.2.0 | |
IBM Maximo Anywhere | =7.6.3.0 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4265 is a vulnerability in IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 that allows an attacker to gain sensitive information about the device due to a lack of device root detection.
CVE-2019-4265 affects IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 by not having device root detection, which exposes the device to the risk of an attacker gaining sensitive information.
CVE-2019-4265 has a severity rating of 2.4, which is considered low.
To fix CVE-2019-4265 in IBM Maximo Anywhere, it is recommended to implement device root detection to prevent attackers from gaining sensitive information.
More information about CVE-2019-4265 can be found on the IBM X-Force ID: 160198 and the IBM Support Pages.