SQL Injection in IBM Maximo Asset Management Products
CVE-2012-0747

Currently unrated

Summary

An SQL injection vulnerability exists in IBM Maximo Asset Management versions 6.2 through 7.5, affecting associated applications like SmartCloud Control Desk and Tivoli Service Request Manager. This security flaw allows remote authenticated users to execute arbitrary SQL commands, potentially compromising database integrity and leading to unauthorized access or data manipulation. It is crucial for users of these products to implement appropriate security measures and monitor for any unusual activity to mitigate the risks associated with this vulnerability.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.