CVE Vulnerabilities

CVE-2012-2184

Published: Sep 10, 2012 | Modified: Aug 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Session fixation vulnerability in IBM Maximo Asset Management 7.1 through 7.5, as used in SmartCloud Control Desk, Tivoli Asset Management for IT, Tivoli Service Request Manager, Maximo Service Desk, and Change and Configuration Management Database (CCMDB), allows remote attackers to hijack web sessions via unspecified vectors.

Affected Software

Name Vendor Start Version End Version
Change_and_configuration_management_database Ibm 6.0 (including) 6.0 (including)
Change_and_configuration_management_database Ibm 7.0 (including) 7.0 (including)
Maximo_asset_management Ibm 7.1.0.0 (including) 7.1.0.0 (including)
Maximo_asset_management Ibm 7.5.0.0 (including) 7.5.0.0 (including)
Maximo_service_desk Ibm 6.2 (including) 6.2 (including)
Smartcloud_control_desk Ibm 7.0 (including) 7.0 (including)
Tivoli_asset_management_for_it Ibm 6.0 (including) 6.0 (including)
Tivoli_asset_management_for_it Ibm 6.2 (including) 6.2 (including)
Tivoli_asset_management_for_it Ibm 7.0 (including) 7.0 (including)
Tivoli_asset_management_for_it Ibm 7.1 (including) 7.1 (including)
Tivoli_asset_management_for_it Ibm 7.2 (including) 7.2 (including)
Tivoli_service_request_manager Ibm 7.0 (including) 7.0 (including)

References