First published: Wed Jun 12 2024(Updated: )
IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite 8.10 and 8.11 allows web pages to be stored locally which can be read by another user on the system. IBM X-Force ID: 279973.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Maximo Asset Management | <=7.6.1.3 | |
IBM Maximo Application Suite | =8.10 | |
IBM Maximo Application Suite | =8.11 | |
IBM Maximo Asset Management | =7.6.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-22333 is categorized as a medium-severity vulnerability.
To fix CVE-2024-22333, it is recommended to update to the latest patched version of IBM Maximo Asset Management or IBM Maximo Application Suite.
CVE-2024-22333 affects IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite versions 8.10 and 8.11.
CVE-2024-22333 is a local file disclosure vulnerability that allows web pages to be accessed by unauthorized users.
No specific workarounds are recommended for CVE-2024-22333; updating to a secure version is the primary mitigation.