First published: Tue Feb 18 2020(Updated: )
IBM Maximo Asset Management 7.6.0.10 and 7.6.1.1 could allow an authenticated user to obtain sensitive information from a stack trace that could be used to aid future attacks. IBM X-Force ID: 167289.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Maximo Asset Management | =7.6.0.10 | |
IBM Maximo Asset Management | =7.6.1.1 | |
<=7.6.0.10 | ||
<=7.6.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-4583 is considered to have a medium severity level due to the potential exposure of sensitive information.
To mitigate CVE-2019-4583, it is recommended to update IBM Maximo Asset Management to the latest patched version provided by IBM.
CVE-2019-4583 affects IBM Maximo Asset Management versions 7.6.0.10 and 7.6.1.1.
Authenticated users of IBM Maximo Asset Management versions 7.6.0.10 and 7.6.1.1 may be affected by CVE-2019-4583.
CVE-2019-4583 could allow an authenticated user to access sensitive information contained within a stack trace.