ZeroHour

CVE-2020-4529

CVSS 3.1
7.4 high
EPSS
<1%p55
Published
()
Modified
Description

IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to server side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 182713.

Vendors
ibm
Products
maximo asset management
Weakness
CWE-918
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L

In the news