Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-35549 | IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries. |
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7180057 |
|
Tue, 08 Jul 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:ibm:maximo_application_suite:*:*:*:*:*:*:*:* |
Thu, 13 Feb 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 25 Jan 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries. | |
| Title | IBM Maximo Application Suite log manipulation | |
| First Time appeared |
Ibm
Ibm maximo Application Suite |
|
| Weaknesses | CWE-117 | |
| CPEs | cpe:2.3:a:ibm:maximo_application_suite:8.10.12:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:8.11.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:9.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:maximo_application_suite:9.1.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm maximo Application Suite |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2025-02-12T20:01:14.546Z
Reserved: 2024-05-09T16:27:36.635Z
Link: CVE-2024-35150
Updated: 2025-02-12T19:54:06.176Z
Status : Analyzed
Published: 2025-01-25T15:15:08.770
Modified: 2025-07-08T20:22:34.600
Link: CVE-2024-35150
No data.
OpenCVE Enrichment
No data.
EUVD