IBM Maximo Asset Management 7.6.1.3 and Manage Component 8.10 through 8.11 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 271843.
| Software | From | Fixed in |
|---|---|---|
| ibm / maximo_asset_management | 7.6.1.3 | 7.6.1.3.x |
| ibm / maximo_application_suite | 8.11 | 8.11.2.x |
| ibm / maximo_application_suite | 8.10 | 8.10.6 |