CVE-2016-0289

shiprec.xml in the SHIPREC application in IBM Maximo Asset Management 7.1 and 7.5 before 7.5.0.10 and 7.6 before 7.6.0.4 allows remote authenticated users to bypass intended item-selection restrictions via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 MEDIUM
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 27%
VendorProductVersion
ibmmaximo_asset_management
7.1
ibmmaximo_asset_management
7.5
ibmmaximo_asset_management
7.5.0.0
ibmmaximo_asset_management
7.5.0.1
ibmmaximo_asset_management
7.5.0.2
ibmmaximo_asset_management
7.5.0.3
ibmmaximo_asset_management
7.5.0.4
ibmmaximo_asset_management
7.5.0.5
ibmmaximo_asset_management
7.5.0.6
ibmmaximo_asset_management
7.5.0.7
ibmmaximo_asset_management
7.5.0.8
ibmmaximo_asset_management
7.5.0.9
ibmmaximo_asset_management
7.6
ibmmaximo_asset_management
7.6.0.0
ibmmaximo_asset_management
7.6.0.1
ibmmaximo_asset_management
7.6.0.2
ibmmaximo_asset_management
7.6.0.3
𝑥
= Vulnerable software versions