CVE-2023-43043: IBM Maximo Application Suite information disclosure
Published Mar 12, 2024
·Updated
IBM Maximo Application Suite - Maximo Mobile for EAM 8.10 and 8.11 could disclose sensitive information to a local user. IBM X-Force ID: 266875.
Other sources
IBM Maximo Application Suite - Maximo Mobile for EAM could disclose sensitive information to a local user.
— IBM
Affected Software
4 affected components
IBM Maximo Mobile for EAM in the Maximo Application Suite<=8.10, 8.11
All of the following
Any of the following
IBM Maximo Mobile for EAM=8.10.0
IBM Maximo Mobile for EAM=8.11.0
IBM Enterprise Asset Management=7.6.1.3
Event History
Mar 12, 2024
CVE Published
via IBM·12:00 AM
Mar 13, 2024
CVE Published
via MITRE·09:19 AM
Data Sourced
via MITRE·09:19 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 AM
DescriptionSeverityWeaknessAffected Software
Dec 14, 57592
Event
via NVD·11:57 PM
Frequently Asked Questions
1
What is the severity of CVE-2023-43043?
CVE-2023-43043 has a severity rating of high due to its potential for sensitive information disclosure.
2
How do I fix CVE-2023-43043?
To mitigate CVE-2023-43043, upgrade to a later version of IBM Maximo Mobile for EAM beyond 8.11.
3
Who is affected by CVE-2023-43043?
CVE-2023-43043 affects users of IBM Maximo Mobile for EAM versions 8.10 and 8.11.
4
What type of information can be disclosed by CVE-2023-43043?
CVE-2023-43043 may disclose sensitive user information to local users of the affected application.
5
Is CVE-2023-43043 a local or remote vulnerability?
CVE-2023-43043 is classified as a local vulnerability, impacting users on the same system.