ZeroHour

CVE-2017-1352

CVSS 3.0
5.5 medium
EPSS
<1%p54
Published
()
Modified
Description

IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to inject commands into work orders that could be executed by another user that downloads the affected file. IBM X-Force ID: 126538.

Vendors
ibm
Products
maximo asset management
Weakness
CWE-77
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.