IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries.
CVE ID: CVE-2024-35150
CVSS Base Severity: MEDIUM
CVSS Base Score: 5.3
Vendor: IBM
Product: Maximo Application Suite
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 19.48% (scored less or equal to compared to others)
EPSS Date: 2025-02-23 (when was this score calculated)