Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-35150


IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries.


Published

2025-01-25T15:15:08.770

Last Modified

2025-07-08T20:22:34.600

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-117

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ibm maximo_application_suite < 8.10.15 Yes
Application ibm maximo_application_suite < 8.11.13 Yes
Application ibm maximo_application_suite < 9.0.5 Yes
Application ibm maximo_application_suite 9.1.0 Yes

References