Vulnerabilities > IBM > Maximo Application Suite > 8.11

DATE CVE VULNERABILITY TITLE RISK
2024-09-07 CVE-2024-37068 Use of a Broken or Risky Cryptographic Algorithm vulnerability in IBM Maximo Application Suite 8.10/8.11/9.0
IBM Maximo Application Suite - Manage Component 8.10, 8.11, and 9.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information using man in the middle techniques.
network
low complexity
ibm CWE-327
7.5
2024-06-13 CVE-2024-22333 Exposure of Resource to Wrong Sphere vulnerability in IBM Maximo Application Suite and Maximo Asset Management
IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite 8.10 and 8.11 allows web pages to be stored locally which can be read by another user on the system.
local
low complexity
ibm CWE-668
3.3
2024-04-06 CVE-2024-22328 Unspecified vulnerability in IBM Maximo Application Suite 8.10/8.11
IBM Maximo Application Suite 8.10 and 8.11 could allow a remote attacker to traverse directories on the system.
network
low complexity
ibm
7.5
2024-03-13 CVE-2023-32335 Unspecified vulnerability in IBM Maximo Application Suite and Maximo Asset Management
IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters.
network
low complexity
ibm
7.5
2024-01-19 CVE-2023-32337 Server-Side Request Forgery (SSRF) vulnerability in IBM Maximo Application Suite and Maximo Asset Management
IBM Maximo Spatial Asset Management 8.10 is vulnerable to server-side request forgery (SSRF).
network
low complexity
ibm CWE-918
5.4
2024-01-19 CVE-2023-47718 Unspecified vulnerability in IBM Maximo Application Suite and Maximo Asset Management
IBM Maximo Asset Management 7.6.1.3 and Manage Component 8.10 through 8.11 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts.
network
low complexity
ibm
8.8