CVE-2023-32332

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Sep 8, 2023
Updated: Sep 13, 2023
CWE ID 79

Summary

CVE-2023-32332 is a vulnerability affecting IBM Maximo Application Suite 8.9, 8.10 and IBM Maximo Asset Management 7.6.1.2, 7.6.1.3. An attacker can exploit this HTML injection flaw to inject malicious code into these applications. The injected code would be executed in the victim's Web browser, potentially leading to security context compromise. IBM's X-Force has assigned ID 255072 to this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • IBM Maximo Asset Management

Affected Vendors

  • IBM Corporation