Interloc Solutions Blog

Maximo Application Suite Security Bulletins

Written by Darlene Nerden | Oct 14, 2024 5:03:37 PM

 IBM has released Maximo Application Suite Security Bulletins this week.  The links to the bulletins are below.  The bulletins contain information regarding when, where, and/or how to address the vulnerability.

Security bulletin: Security Bulletin: There is a vulnerability in graphql-java-20.1.jar used by IBM Maximo Manage application in IBM Maximo Application Suite (CVE-2024-40094) –  

https://www.ibm.com/support/pages/node/7172511?myns=swgother&mynp=OCSSRHPA&mync=E&cm_sp=swgother-_-OCSSRHPA-_-E 

 

Security bulletin: Security Bulletin: IBM Maximo Application Suite uses multiple packages which are vulnerable to multiple CVEs –  

https://www.ibm.com/support/pages/node/7172514?myns=swgother&mynp=OCSSRHPA&mync=E&cm_sp=swgother-_-OCSSRHPA-_-E 

 

Security bulletin: Security Bulletin: IBM Maximo Application Suite - IoT Compoenet uses zipp-3.15.0-py3-none-any.whl which is vulnerable to CVE-2024-5569 –  

https://www.ibm.com/support/pages/node/7172524?myns=swgother&mynp=OCSSRHPA&mync=E&cm_sp=swgother-_-OCSSRHPA-_-E 

 

Security bulletin: Security Bulletin: IBM Asset Data Dictionary Component uses zipp-3.15.0-py3-none-any.whl and urllib3-2.0.7-py3-none-any.whl which is vulnerable to CVE-2024-5569 and CVE-2024-37891 –  

https://www.ibm.com/support/pages/node/7172525?myns=swgother&mynp=OCSSRHPA&mync=E&cm_sp=swgother-_-OCSSRHPA-_-E 

 

Security bulletin: Security Bulletin: IBM Maximo Application Suite - Ai-Broker Component component uses nltk-3.8.1-py3-none-any.whl which is vulnerable to this CVE-2024-39705 –  

https://www.ibm.com/support/pages/node/7172672?myns=swgother&mynp=OCSSLPYA&mync=E&cm_sp=swgother-_-OCSSLPYA-_-E 

 

 

Maximo Asset Management Security Bulletins 

IBM has released Maximo Asset Management Security Bulletins this week.  The links to the bulletins are below.  The bulletins contain information regarding when, where, and/or how to address the vulnerability. 

 

Security bulletin: Security Bulletin: A security vulnerability has been identified in IBM WebSphere Application Server shipped with Asset and Service Management (CVE-2024-45073) –  

https://www.ibm.com/support/pages/node/7172512?myns=swgother&mynp=OCSSLKSJ&mynp=OCSSG2D3&mynp=OCSSKVFR&mynp=OCSSLL9G&mynp=OCSS5RRF&mynp=OCSSLL9Z&mynp=OCSSLL84&mynp=OCSSLL8M&mynp=OCSSLLAM&mynp=OCSSLKT6&mynp=OCSSWT9A&mync=E&cm_sp=swgother-_-OCSSLKSJ-OCSSG2D3-OCSSKVFR-OCSSLL9G-OCSS5RRF-OCSSLL9Z-OCSSLL84-OCSSLL8M-OCSSLLAM-OCSSLKT6-OCSSWT9A-_-E