SQL Injection Vulnerability in IBM Maximo Asset Management by IBM
CVE-2012-0728 
Currently unrated
Key Information:
- Vendor
- IBM
- Status
- Vendor
- CVE Published:
- 10 September 2012
What is CVE-2012-0728?
An SQL injection vulnerability exists in IBM Maximo Asset Management versions 7.1 through 7.5. This security flaw can be exploited by remote authenticated users, allowing them to execute arbitrary SQL commands through unspecified input vectors. The affected products include not only IBM Maximo Asset Management but also its associated applications such as SmartCloud Control Desk and Tivoli Service Request Manager. This exposes sensitive data and poses a significant threat to the integrity and confidentiality of the systems involved.