Skip to content

CVE-2013-2998

frontcontroller.jsp in IBM Maximo Asset Management 7.x before 7.5.0.6 and SmartCloud Control Desk 7.x before 7.5.0.3 and 7.5.1.x before 7.5.1.2 allows remote authenticated users to obtain sensitive information via an invalid action_code.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0018 (0.2%)
Percentile: 39.0%
EPSS: 2026-05-06

Affects

ibm:smartcloud_control_deskibm:maximo_asset_management

Technical description

frontcontroller.jsp in IBM Maximo Asset Management 7.x before 7.5.0.6 and SmartCloud Control Desk 7.x before 7.5.0.3 and 7.5.1.x before 7.5.1.2 allows remote authenticated users to obtain sensitive information via an invalid action_code.

Published: 5/26/2014, 11:14:51 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam