Known vulnerabilities in IBM Maximo Application Suite - page 3
Vendor:
IBM Corporation
Software:
IBM Maximo Application Suite
Software CPE:
cpe:2.3:a:ibm_corporation:ibm_maximo_application_suite:*:*:*:*:*:*:*:*
Website:
https://www.ibm.com/us-en
Total vulnerabilities:
302
Public exploits:
24
Known exploited (KEV):
3
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
9.2
9.2.1
9.1.18
9.1.17
9.0.26
9.0.25
9.1.19
9.0.27
9.1.15
9.1.14
9.1.13
9.1.12
9.0.23
9.1.16
9.0.24
8.11.34
8.10.37
9.1.10
9.1.9
9.0.21
9.0.20
8.11.32
8.11.31
8.10.34
8.10.35
8.10.36
8.11.33
9.0.22
9.1.11
8.10.33
8.11.30
9.0.19
9.1.8
8.10.32
8.11.29
9.0.18
9.1.7
9.1.6
9.0.17
8.11.28
8.10.31
9.1.4
8.10.30
8.11.27
9.0.16
9.1.5
9.1.2
9.0.9
9.0.14
8.11.20
8.11.25
8.10.28
8.10.23
8.10.29
8.11.26
9.0.15
9.1.3
8.10.27
8.11.24
9.0.13
9.1.1
8.10.26
8.11.23
9.0.12
8.10.25
8.11.22
9.0.11
8.10.24
8.11.21
9.0.10
8.10.21
8.11.18
9.0.7
8.10.22
8.11.19
9.0.8
8.10.20
8.11.17
9.0.6
9.0.5
8.10.19
8.11.16
9.0.4
9.1.0
8.10.18
8.11.15
9.0.3
8.10.17
8.11.14
9.0.2
8.10.16
8.10.15
8.11.13
8.11.12
9.0.1
8.10.12
8.11.10
8.11.11
8.10.14
8.7.11
9.0.0
8.7.10
8.11.8
8.10.11
7.6.1.3
8.11.7
8.10.10
8.11.4
8.10
8.11.6
8.10.9
8.6.9
8.7.7
8.6.7
8.6.8
8.11.5
8.10.8
8.9.11
8.11.3
8.10.7
8.11.2
8.11.1
8.11.0
8.10.6
8.9.10
8.10.5
8.9.8
8.9.9
8.10.2
8.9.7
8.10.4
8.8.10
8.8.9
8.9.5
8.10.1
8.9.4
8.8.8
8.10.3
8.9.6
8.6.5
8.9.0
8.9.1
8.10.0
8.8.5
8.9.3
8.8.7
8.4.7
8.9.2
8.8.6
8.4.4
8.5
8.4.6
8.4.5
8.8.4
8.8.3
8.7.6
8.4.3
8.3.6
8.8.2
8.7.5
8.3.5
8.8.1
8.7.4
8.3.4
8.3.3
8.7.3
8.2.3
8.6.4
8.3.2
8.7.2
8.7.1
8.6.3
8.6.2
8.6.1
8.5.2
8.5.1
8.4.2
8.4.1
8.3.1
8.2.2
8.2.1
8.1.1
Vulnerabilities (302)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU113173 - Use of Insufficiently Random Values CVE-2025-7783 |
CWE-330 | Medium | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 23.07.2025 |
SB2025072332 SB2025072333 SB2025081876 and 62 more |
||
| #VU113085 - Interpretation Conflict CVE-2024-56339 |
CWE-436 | Medium | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 21.07.2025 |
SB2025072116 SB2025072130 SB2025072305 and 45 more |
||
| #VU113074 - Stack-based buffer overflow CVE-2025-36097 |
CWE-121 | High | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 18.07.2025 |
SB20250718100 SB2025072128 SB2025072307 and 43 more |
||
| #VU112142 - Improper Handling of Case Sensitivity CVE-2024-6866 |
CWE-178 | Medium | 8.10.27, 8.11.24, 9.0.13, 9.1.1 | 03.07.2025 |
SB2025070336 SB2025070342 SB2025080147 and 6 more |
||
| #VU112141 - Improper input validation CVE-2024-6844 |
CWE-20 | 8.10.27, 8.11.24, 9.0.13, 9.1.1 | 03.07.2025 |
SB2025070336 SB2025070342 SB2025080147 and 6 more |
|||
| #VU112140 - Security Features CVE-2024-6839 |
CWE-254 | Medium | 8.10.27, 8.11.24, 9.0.13, 9.1.1 | 03.07.2025 |
SB2025070336 SB2025070342 SB2025080147 and 6 more |
||
| #VU111979 - Protection Mechanism Failure CVE-2025-50181 |
CWE-693 | Low | 8.10.30, 8.11.27, 9.0.16, 9.1.5 | 26.06.2025 |
SB2025062659 SB2025062660 SB2025062662 and 54 more |
||
| #VU109840 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-47273 |
CWE-22 | High | 8.10.30, 8.11.27, 9.0.16, 9.1.5 | 27.05.2025 |
SB2025052721 SB2025052734 SB2025052736 and 112 more |
||
| #VU109059 - Cryptographic Issues CVE-2025-47278 |
CWE-310 | Low | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 13.05.2025 |
SB2025051380 SB20250521103 SB2025052950 and 11 more |
||
| #VU107889 - Improper input validation CVE-2025-22872 |
CWE-20 | Low | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 23.04.2025 |
SB2025042357 SB2025042413 SB2025042414 and 51 more |
||
| #VU105984 - Inefficient Regular Expression Complexity CVE-2025-27789 |
CWE-1333 | Low | 8.10.26, 8.11.23, 9.0.12 | 24.03.2025 |
SB2025032476 SB2025041020 SB2025041691 and 45 more |
||
| #VU105862 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-57965 |
CWE-79 | Medium | 8.10.25, 8.11.22, 9.0.11 | 19.03.2025 |
SB2025031916 SB2025031918 SB2025050262 and 14 more |
||
| #VU105452 - Server-Side Request Forgery (SSRF) CVE-2025-27152 |
CWE-918 | Medium | 8.10.25, 8.11.22, 9.0.11 | 07.03.2025 |
SB2025030777 SB2025031918 SB2025032417 and 42 more |
||
| #VU105112 - Resource exhaustion CVE-2025-23184 |
CWE-400 | Medium | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 28.02.2025 |
SB2025022807 SB2025030340 SB2025041017 and 40 more |
||
| #VU103771 - Improper Authentication CVE-2024-12797 |
CWE-287 | Medium | 8.10.25, 8.11.22, 9.0.11 | 11.02.2025 |
SB2025021187 SB20250211108 SB20250211159 and 60 more |
||
| #VU103769 - Resource exhaustion CVE-2025-25193 |
CWE-400 | Low | 8.10.29, 8.11.26, 9.0.15, 9.1.3 | 11.02.2025 |
SB2025021186 SB202502197190 SB2025030409 and 56 more |
||
| #VU100259 - Resource Management Errors CVE-2024-47535 |
CWE-399 | Low | 8.10.25, 8.11.22, 9.0.11 | 12.11.2024 |
SB2024111299 SB2024122313 SB2025012061 and 79 more |
||
| #VU96730 - Exposure of sensitive information to an unauthorized actor CVE-2024-6221 |
CWE-200 | Medium | 8.10.19, 8.11.16, 9.0.4 | 03.09.2024 |
SB2024090356 SB2024092768 SB2024100968 and 5 more |
||
| #VU95157 - Incorrect Provision of Specified Functionality CVE-2024-4032 |
CWE-684 | Medium | 8.10.24, 8.11.21, 9.0.10 | 02.08.2024 |
SB2024080203 SB2024080207 SB2024080209 and 101 more |
||
| #VU93850 - Resource exhaustion CVE-2024-24791 |
CWE-400 | Medium | 8.10.25, 8.11.22, 9.0.11 | 07.07.2024 |
SB2024070727 SB2024070728 SB2024070729 and 86 more |
Showing elements 41 - 60 out of 302