Lucene search

K
cvelistIbmCVELIST:CVE-2016-5902
HistoryFeb 08, 2017 - 10:00 p.m.

CVE-2016-5902

2017-02-0822:00:00
ibm
www.cve.org

0.001 Low

EPSS

Percentile

30.7%

IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

CNA Affected

[
  {
    "product": "IBM Maximo Asset Management 6.2, 7.1, 7.5, 7.5.0.0, 7.5.0.10, 7.1.0.0, 6.2.0.0, 7.2, 7.1.1, 7.1.2, 7.2.1, 6.2.1, 6.2.2, 6.2.3, 6.2.4, 6.2.5, 6.2.6, 6.2.7, 6.2.8, 7.1.1.1, 7.1.1.10, 7.1.1.11, 7.1.1.12, 7.1.1.2, 7.1.1.5, 7.1.1.6, 7.1.1.7, 7.1.1.8, 7.1.1.9, 7.5.0.1, 7.5.0.2, 7.5.0.3, 7.5.0.4, 7.5.0.5, 7.6, 7.5.0, 7.6.0",
    "vendor": "IBM Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "IBM Maximo Asset Management 6.2, 7.1, 7.5, 7.5.0.0, 7.5.0.10, 7.1.0.0, 6.2.0.0, 7.2, 7.1.1, 7.1.2, 7.2.1, 6.2.1, 6.2.2, 6.2.3, 6.2.4, 6.2.5, 6.2.6, 6.2.7, 6.2.8, 7.1.1.1, 7.1.1.10, 7.1.1.11, 7.1.1.12, 7..10"
      },
      {
        "status": "affected",
        "version": "7.1.0.0"
      },
      {
        "status": "affected",
        "version": "6.2.0.0"
      },
      {
        "status": "affected",
        "version": "7.2"
      },
      {
        "status": "affected",
        "version": "7.1.1"
      },
      {
        "status": "affected",
        "version": "7.1.2"
      },
      {
        "status": "affected",
        "version": "7.2.1"
      },
      {
        "status": "affected",
        "version": "6.2.1"
      },
      {
        "status": "affected",
        "version": "6.2.2"
      },
      {
        "status": "affected",
        "version": "6.2.3"
      },
      {
        "status": "affected",
        "version": "6.2.4"
      },
      {
        "status": "affected",
        "version": "6.2.5"
      },
      {
        "status": "affected",
        "version": "6.2.6"
      },
      {
        "status": "affected",
        "version": "6.2.7"
      },
      {
        "status": "affected",
        "version": "6.2.8"
      },
      {
        "status": "affected",
        "version": "7.1.1.1"
      },
      {
        "status": "affected",
        "version": "7.1.1.10"
      },
      {
        "status": "affected",
        "version": "7.1.1.11"
      },
      {
        "status": "affected",
        "version": "7.1.1.12"
      },
      {
        "status": "affected",
        "version": "7.1.1.2"
      },
      {
        "status": "affected",
        "version": "7.1.1.5"
      },
      {
        "status": "affected",
        "version": "7.1.1.6"
      },
      {
        "status": "affected",
        "version": "7.1.1.7"
      },
      {
        "status": "affected",
        "version": "7.1.1.8"
      },
      {
        "status": "affected",
        "version": "7.1.1.9"
      },
      {
        "status": "affected",
        "version": "7.5.0.1"
      },
      {
        "status": "affected",
        "version": "7.5.0.2"
      },
      {
        "status": "affected",
        "version": "7.5.0.3"
      },
      {
        "status": "affected",
        "version": "7.5.0.4"
      },
      {
        "status": "affected",
        "version": "7.5.0.5"
      },
      {
        "status": "affected",
        "version": "7.6"
      },
      {
        "status": "affected",
        "version": "7.5.0"
      },
      {
        "status": "affected",
        "version": "7.6.0"
      }
    ]
  }
]

0.001 Low

EPSS

Percentile

30.7%

Related for CVELIST:CVE-2016-5902