Vulnerabilities > IBM > Maximo Anywhere > 7.6.1.0

DATE CVE VULNERABILITY TITLE RISK
2020-02-19 CVE-2019-4429 Cross-site Scripting vulnerability in IBM products
IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2019-10-10 CVE-2019-4265 Insecure Storage of Sensitive Information vulnerability in IBM Maximo Anywhere
IBM Maximo Anywhere 7.6.0, 7.6.1, 7.6.2, and 7.6.3 does not have device root detection which could result in an attacker gaining sensitive information about the device.
local
low complexity
ibm CWE-922
2.1
2018-02-21 CVE-2017-1604 Cross-site Scripting vulnerability in IBM Maximo Anywhere
IBM Maximo Anywhere 7.5 and 7.6 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5