CVE-2023-43037: IBM Maximo Application Suite improper access control
IBM Maximo Application Suite 8.11 and 9.0 could allow an authenticated user to perform unauthorized actions due to improper input validation.
Other sources
IBM Maximo Application Suite could allow an authenticated user to perform unauthorized actions due to improper input validation.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43037?
CVE-2023-43037 is considered to have a high severity due to the potential for unauthorized actions by authenticated users.
How do I fix CVE-2023-43037?
To fix CVE-2023-43037, you should apply the latest security patches provided by IBM for the Maximo Application Suite.
What versions of IBM Maximo Application Suite are affected by CVE-2023-43037?
CVE-2023-43037 affects IBM Maximo Application Suite versions up to and including 9.0 and 8.11.
Can an attacker exploit CVE-2023-43037 without authentication?
No, an attacker must be an authenticated user to exploit CVE-2023-43037 due to improper input validation.
What types of actions can be performed due to CVE-2023-43037?
CVE-2023-43037 can allow authenticated users to perform unauthorized actions within the IBM Maximo Application Suite.