CVE-2024-35144
CVSS 3.1 Score 5.3 of 10 (medium)
Details
Published Jan 25, 2025
CWE ID 540
Summary
CVE-2024-35144 is a vulnerability affecting IBM Maximo Application Suite versions 8.10, 8.11, and 9.0. The Monitor Component in these versions stores source code on the web server, posing a risk for potential attackers. By exploiting this vulnerability, adversaries could gain additional access to the system and launch further attacks. The stored source code may contain sensitive information, increasing the severity of potential data breaches. IBM recommends applying the available patches to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- IBM Corporation