CVE-2016-0222
Published Mar 14, 2016
Last updated 9 years ago
Overview
- Description
- IBM Maximo Asset Management 7.6 before 7.6.0.3 IFIX001 allows remote authenticated users to bypass intended access restrictions and read arbitrary purchase-order work logs via unspecified vectors.
- Source
- psirt@us.ibm.com
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 1.4
- Exploitability score
- 2.8
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 4
- Impact score
- 2.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-284
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B028794E-5FA0-4E3D-AC4D-A2826DD6282C" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "050D798F-F9CC-447B-94F4-81A893349695" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "948B518D-129E-42E7-B07F-5E1CA5056DFA" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7038EBF6-E527-492B-A6A5-14F9A2F79BDF" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:smartcloud_control_desk:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "742BF86E-E5D2-4CC9-BD41-78C243995880" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B028794E-5FA0-4E3D-AC4D-A2826DD6282C" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "050D798F-F9CC-447B-94F4-81A893349695" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "948B518D-129E-42E7-B07F-5E1CA5056DFA" }, { "criteria": "cpe:2.3:a:ibm:maximo_asset_management:7.6.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7038EBF6-E527-492B-A6A5-14F9A2F79BDF" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:maximo_for_government:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6952A03A-657B-4CE9-8C85-1EBEB6D090FA" }, { "criteria": "cpe:2.3:a:ibm:maximo_for_life_sciences:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0660482-340B-4FDA-8F0A-323BE0167800" }, { "criteria": "cpe:2.3:a:ibm:maximo_for_nuclear_power:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0E7B2B1-2746-40A4-83FC-DCEDE8B607BA" }, { "criteria": "cpe:2.3:a:ibm:maximo_for_oil_and_gas:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "55DB8F6D-F7DB-485B-80D9-368188F2E858" }, { "criteria": "cpe:2.3:a:ibm:maximo_for_transportation:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "537D5FEA-7809-4CB6-9D71-FC3C408B2611" }, { "criteria": "cpe:2.3:a:ibm:maximo_for_utilities:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EEE303C7-7873-4754-926D-122FD45337FB" } ], "operator": "OR" } ], "operator": "AND" } ]