IBM Maximo Directory Traversal Vulnerability in MXAPIASSET API

Vulnerability

A directory traversal vulnerability has been identified in the IBM Maximo MXAPIASSET API version 7.6.1.3. This vulnerability could allow a remote attacker to traverse directories on the system by sending a specially crafted URL request that includes "dot dot" sequences. Exploitation of this vulnerability could enable the attacker to view arbitrary files on the system.

Impact

Exploitation of this vulnerability could lead to unauthorized access to files on the system, potentially exposing sensitive information.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.8
exploitability
5.2
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.