CVE-2025-2898: IBM Maximo Application Suite

High severity, CVSS 8.8. EPSS: 0.3% chance of exploitation in the next 30 days.

IBM Maximo Application Suite 9.0 could allow an attacker with some level of access to elevate their privileges due to a security configuration vulnerability in Role-Based Access Control (RBAC) configurations.

Affected products

  • IBM Maximo Application Suite: version 9.0 only

Published 2025-05-06. Last modified 2026-06-17.