VYPR

Maximo For Aviation

Sign in to watch

by IBM

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2016-6072Med0.355.40.00Feb 1, 2017IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.
CVE-2016-5896Med0.345.30.00Feb 1, 2017IBM Maximo Asset Management could disclose sensitive information from a stack trace after submitting incorrect login onto Cognos browser.