Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Maximo Asset Management — Vulnerabilities & Security Advisories 84

All 84 CVE vulnerabilities found in Maximo Asset Management, with AI-generated Chinese analysis, references, and POCs.

This page documents security vulnerabilities associated with IBM Maximo Asset Management, a comprehensive enterprise asset management software suite. It aggregates weakness data classified under Common Weakness Enumeration (CWE) categories that impact the confidentiality, integrity, and availability of the application and its underlying infrastructure. The collection includes vulnerabilities discovered from 2005 through the present, covering a broad spectrum of threat vectors ranging from remote code execution and cross-site scripting to insecure default configurations and privilege escalation flaws. By centralizing this information, the resource provides a structured view of the security landscape surrounding this critical industrial and operational technology platform. Readers can utilize this data to track IBM’s historical advisory releases and monitor the remediation pace for critical defects. It serves as a reference for understanding how specific weakness classes manifest within the Maximo ecosystem, allowing security teams to assess risk exposure based on known defect patterns. Furthermore, users can look up the product’s vulnerability history to identify persistent security issues or recurring architectural flaws that have been addressed over time. This aggregated view supports due diligence processes for integration partners, compliance auditors, and internal security teams who need to evaluate the long-term security posture of the software. The content is organized to facilitate easy navigation through timeframes and severity levels, ensuring that stakeholders can quickly locate relevant data without sifting through unstructured logs. This approach aims to provide clarity on the evolution of security threats and the corresponding mitigations provided by the vendor.

Vendor: IBM Corporation

CVE ID Title CVSS Severity Published
CVE-2025-2986 IBM Maximo Asset Management cross-site scripting CWE-79 5.5 Medium 2025-04-25
CVE-2025-2987 IBM Maximo Asset Management server-side request forgery CWE-918 3.8 Low 2025-04-21
CVE-2024-45077 IBM Maximo Asset Management file upload CWE-98 6.5 Medium 2025-01-24
CVE-2024-45652 IBM Maximo Asset Management directory traversal CWE-22 6.5 Medium 2025-01-19
CVE-2024-45088 IBM Maximo Asset Management cross-site scripting CWE-79 6.4 Medium 2024-11-11
CVE-2024-27266 IBM Maximo Application Suite XML external entity injection CWE-611 8.2 High 2024-03-14
CVE-2023-38723 Maximo Asset Management cross-site scripting CWE-79 6.4 Medium 2024-03-13
CVE-2023-32333 IBM Maximo Asset Management improper access control CWE-284 6.5 Medium 2024-02-02
CVE-2023-47718 IBM Maximo Asset Management cross-site request forgery CWE-352 4.3 Medium 2024-01-19
CVE-2023-32332 IBM Maximo Application Suite and IBM Maximo Asset Management HTML injection 5.4 Medium 2023-09-08
CVE-2023-32334 IBM Maximo Asset Management information disclosure 3.7 Low 2023-06-05
CVE-2022-43866 IBM Maximo Asset Management cross-site scripting CWE-79 5.4 Medium 2023-05-05
CVE-2023-27864 IBM Maximo Asset Management HTML injection 5.4 Medium 2023-04-28
CVE-2023-27860 IBM Maximo Asset Management information disclosure CWE-209 5.3 Medium 2023-04-27
CVE-2022-35645 IBM Maximo Asset Management cross-site scripting CWE-79 6.4 Medium 2023-03-02
CVE-2022-41734 IBM Maximo Asset Management information disclosure CWE-200 5.3 Medium 2023-02-17
CVE-2022-35281 IBM Maximo Application Suite command injection CWE-1236 5.5 Medium 2023-01-06
CVE-2022-40616 IBM Maximo Asset Management 授权问题漏洞 9.1 - 2022-09-21
CVE-2021-38924 IBM Maximo Asset Management 安全漏洞 5.3 - 2022-09-14
CVE-2022-35714 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2022-08-26
CVE-2021-29854 IBM Maximo Asset Management 安全漏洞 5.4 - 2022-05-03
CVE-2022-22436 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2022-04-21
CVE-2022-22435 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2022-04-21
CVE-2021-38935 IBM Maximo Asset Management安全漏洞 7.5 - 2022-02-18
CVE-2021-29743 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2021-08-30
CVE-2021-29744 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2021-08-27
CVE-2021-20509 IBM Maximo Asset Management 注入漏洞 9.8 - 2021-08-12
CVE-2021-20374 IBM Maximo Asset Management 跨站脚本漏洞 5.4 - 2021-05-19
CVE-2020-4493 IBM Maximo Asset Management 授权问题漏洞 9.8 - 2020-10-05
CVE-2020-4409 IBM Maximo Asset Management 输入验证错误漏洞 6.1 - 2020-09-16

All 84 known CVE vulnerabilities affecting Maximo Asset Management with full Chinese analysis, references, and POCs where available.