CVE-2013-3971

IBM Maximo Asset Management 7.1-7.1.1.12 and < 7.5.0.5 - Authenticated Access Restriction Bypass

Title source: llm
STIX 2.1

Description

IBM Maximo Asset Management 7.1 through 7.1.1.12 and 7.5 before 7.5.0.5 allows remote authenticated users to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2013-3049.

References (4)

Core 4
Core References
Various Sources vendor-advisory x_refsource_aixapar
http://www-01.ibm.com/support/docview.wss?uid=swg1IV37459
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/84848
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/55068
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21651085

Scores

EPSS 0.0112
EPSS Percentile 62.7%

Details

CWE
CWE-264
Status published
Products (17)
ibm/maximo_asset_management 7.1
ibm/maximo_asset_management 7.1.1
ibm/maximo_asset_management 7.1.1.1
ibm/maximo_asset_management 7.1.1.2
ibm/maximo_asset_management 7.1.1.5
ibm/maximo_asset_management 7.1.1.6
ibm/maximo_asset_management 7.1.1.7
ibm/maximo_asset_management 7.1.1.8
ibm/maximo_asset_management 7.1.1.9
ibm/maximo_asset_management 7.1.1.10
... and 7 more
Published Oct 01, 2013
Tracked Since Feb 18, 2026