CVE-2024-35150: IBM Maximo Application Suite
Medium severity, CVSS 5.3. EPSS: 0.3% chance of exploitation in the next 30 days.
IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries.
Affected products
- IBM Maximo Application Suite: from 8.10.12, before 8.10.15 (fixed in 8.10.15); from 8.11, before 8.11.13 (fixed in 8.11.13); from 9.0.1, before 9.0.5 (fixed in 9.0.5); version 9.1.0 only
Published 2025-01-25. Last modified 2026-06-17.