ZeroHour

CVE-2018-2028

CVSS 3.1
6.5 medium
EPSS
<1%p54
Published
()
Modified
Description

IBM Maximo Asset Management 7.6 could allow a an authenticated user to replace a target page with a phishing site which could allow the attacker to obtain highly sensitive information. IBM X-Force ID: 155554.

Vendors
ibm
Products
control desk, maximo asset management, maximo for aviation, maximo for life sciences, maximo for nuclear power, maximo for oil and gas, maximo for transportation, maximo for utilities, smartcloud control desk, tivoli integration composer
Weakness
CWE-312
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.