Wednesday, November 25, 2015

IBM Security Bulletin: IBM Maximo Asset Management could allow an authenticated user to view query results that the user should not have access to view due to improper access control (CVE-2015-5051)

IBM Maximo Asset Management contains a vulnerability which could allow an authenticated user to view query results that the user should not have access to view due to improper access control. This vulnerability could allow a local attacker to compromise data...

from IBM Product Security Incident Response Team http://ift.tt/1LzJbQB

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.