Lucene search

K
ibmIBM324F8F5999E167CC96E292968AEEB134F3BF85DB034DE9F232CBFFFDF3030A97
HistoryNov 06, 2020 - 6:25 p.m.

Security Bulletin: IBM Maximo Spatial Asset Management allows web pages to be stored locally which can be read by another user on the system (CVE-2020-4650)

2020-11-0618:25:52
www.ibm.com
7

0.0004 Low

EPSS

Percentile

12.6%

Summary

IBM Maximo Spatial Asset Management allows web pages to be stored locally which can be read by another user on the system.

Vulnerability Details

CVEID:CVE-2020-4650
**DESCRIPTION:**IBM Maximo Spatial Asset Management allows web pages to be stored locally which can be read by another user on the system.
CVSS Base score: 4
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/186023 for the current score.
CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)

Affected Products and Versions

Affected Product(s) Version(s)
IBM Maximo Spatial Asset Management 7.6

Remediation/Fixes

The recommended solution is to download the appropriate Interim Fix or Fix Pack from Fix Central (What is Fix Central?) and apply for each affected product as soon as possible. Please see below for information on the fixes available for each product, version, and release. Follow the installation instructions in the β€˜readme’ documentation provided with each fix pack or interim fix.

For Maximo Spatial Management 7.6:

VRM Fix Pack, Feature Pack, or Interim Fix Download
7.6.0.3

Maximo Spatial Asset Management

Interim Fix:

7.6.0.3-TIV-MAMST-IF021

| Fix Central
7.6.0.4|

Maximo Spatial Asset Management

Interim Fix:

7.6.0.4-TIV-MAMST-IF012

| Fix Central
7.6.0.5|

Maximo Spatial Asset Management

Interim Fix:

7.6.0.5-TIV-MAMST-IF012

|

Fix Central

7.6.10|

Maximo Spatial Asset Management

Interim Fix:

7.6.1.0-TIV-MAMST-IF001

|

Fix Central

Workarounds and Mitigations

None

0.0004 Low

EPSS

Percentile

12.6%

Related for 324F8F5999E167CC96E292968AEEB134F3BF85DB034DE9F232CBFFFDF3030A97