Known vulnerabilities in Maximo Application Suite - IoT Component

Software CPE: cpe:2.3:a:ibm_corporation:maximo_application_suite_-_iot_component:*:*:*:*:*:*:*:*
Total vulnerabilities: 160
Public exploits: 20
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Maximo Application Suite - IoT Component Maximo Application Suite - IoT Component is affected by 160 known vulnerabilities: 1 critical, 14 high, 108 medium, 37 low Critical High Medium Low

Vulnerabilities (160)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU139151 - Incorrect Authorization
CVE-2026-59889
CWE-863 Low
No
No
9.0.22, 9.1.13, 9.2.1 22.07.2026 SB2026072278
SB2026072413
SB20260728138
and 2 more
#VU137737 - Information Exposure Through Log Files
CVE-2026-33558
CWE-532 Medium
No
No
9.0.22, 9.1.13, 9.2.1 15.07.2026 SB2026071548
SB2026071553
SB2026080425
and 2 more
#VU135919 - Selection of Less-Secure Algorithm During Negotiat
CVE-2026-54291
CWE-757 Medium
No
No
9.0.22, 9.1.13, 9.2.1 30.06.2026 SB2026063034
SB2026073042
SB2026080425
#VU125866 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2026-2332
CWE-444 Medium
No
No
9.0.22, 9.1.13, 9.2.1 14.04.2026 SB2026041433
SB2026050517
SB20260507308
and 10 more
#VU124873 - Improper Restriction of XML External Entity Reference ('XXE')
CVE-2026-24400
CWE-611 High
No
No
8.7.32, 8.8.29, 9.0.18, 9.1.9 06.04.2026 SB2026040614
SB2026040615
SB2026040623
and 5 more
#VU124872 - Use of Cache Containing Sensitive Information
CVE-2026-27205
CWE-524 Medium
No
No
8.7.32, 8.8.29, 9.0.18, 9.1.9 06.04.2026 SB2026040613
SB2026040615
SB2026040617
and 14 more
#VU123576 - Improper input validation
CVE-2025-11143
CWE-20 Low
No
No
9.0.22, 9.1.13, 9.2.1 05.03.2026 SB2026030558
SB2026040716
SB2026042070
and 12 more
#VU123140 - Inefficient Regular Expression Complexity
CVE-2026-26996
CWE-1333 Medium
No
No
8.7.32, 8.8.29, 9.0.18, 9.1.9 23.02.2026 SB2026022345
SB2026030633
SB2026032328
and 33 more
#VU123124 - Improper Handling of Windows Device Names
CVE-2026-27199
CWE-67 Medium
No
No
8.7.32, 8.8.29, 9.0.18, 9.1.9 23.02.2026 SB2026022322
SB2026030633
SB2026040615
and 10 more
#VU118106 - UNIX Symbolic Link (Symlink) Following
CVE-2025-52565
CWE-61 Low
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 05.11.2025 SB2025110519
SB2025110530
SB2025110545
and 38 more
#VU118104 - UNIX Symbolic Link (Symlink) Following
CVE-2025-31133
CWE-61 Low
Available
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 05.11.2025 SB2025110519
SB2025110530
SB2025110545
and 34 more
#VU117342 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-48913
CWE-94 Medium
No
No
8.7.27, 8.8.23, 9.0.13, 9.1.4 17.10.2025 SB2025101733
SB2025101736
SB2025102866
and 4 more
#VU114760 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2025-58056
CWE-444 Medium
No
No
8.7.27, 8.8.23, 9.0.13, 9.1.4 03.09.2025 SB2025090340
SB2025090949
SB20251008161
and 38 more
#VU101894 - Insufficient Technical Documentation
CVE-2024-51744
CWE-1059 Low
No
No
8.7.27, 8.8.23, 9.0.13, 9.1.4 23.12.2024 SB2024122304
SB2024122309
SB20241230139
and 21 more
#VU85468 - Improper input validation
CVE-2024-20918
CWE-20 Medium
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB2024011691
and 192 more
#VU85470 - Improper input validation
CVE-2024-20919
CWE-20 Medium
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB2024011691
and 164 more
#VU85471 - Improper input validation
CVE-2024-20921
CWE-20 Medium
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB2024011691
and 185 more
#VU85475 - Improper input validation
CVE-2024-20923
CWE-20 Low
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB20240312202
and 12 more
#VU85476 - Improper input validation
CVE-2024-20925
CWE-20 Low
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB20240312202
and 12 more
#VU85477 - Improper input validation
CVE-2024-20922
CWE-20 Low
No
No
8.7.29, 8.8.25, 9.0.15, 9.1.6 16.01.2024 SB2024011689
SB2024011690
SB20240312202
and 12 more


Showing elements 1 - 20 out of 160