CVE-2017-1357: IBM Maximo Asset Management

Medium severity, CVSS 4.3. EPSS: 0.9% chance of exploitation in the next 30 days.

IBM Maximo Asset Management 7.5 and 7.6 could allow an authenticated user to manipulate work orders to forge emails which could be used to conduct further advanced attacks. IBM X-Force ID: 126684.

Affected products

  • IBM Maximo Asset Management: version 7.5.0.0 only; version 7.5.0.1 only; version 7.5.0.2 only; version 7.5.0.3 only; version 7.5.0.4 only; version 7.5.0.5 only; …
  • IBM Maximo Asset Management Essentials: version 7.5.0.0 only; version 7.5.0.1 only; version 7.5.0.2 only; version 7.5.0.3 only; version 7.5.0.4 only; version 7.5.0.5 only; …

Published 2017-08-09. Last modified 2026-06-17.