CVE-2022-41734: IBM Maximo Asset Management information disclosure
IBM Maximo Asset Management 7.6.1.2 and 7.6.1.3 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 237587.
Other sources
IBM Maximo Asset Management could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-41734.
What is the severity of CVE-2022-41734?
The severity of CVE-2022-41734 is high with a severity value of 7.5.
Which software versions are affected by CVE-2022-41734?
IBM Maximo Asset Management versions 7.6.1.2 and 7.6.1.3 are affected by CVE-2022-41734.
How can a remote attacker exploit CVE-2022-41734?
A remote attacker can exploit CVE-2022-41734 by obtaining sensitive information when a detailed technical error message is returned in the browser.
Are there any references available for CVE-2022-41734?
Yes, you can find references for CVE-2022-41734 at the following links: [Reference 1](https://exchange.xforce.ibmcloud.com/vulnerabilities/237587) and [Reference 2](https://www.ibm.com/support/pages/node/6857605).