CVE-2025-14684
MEDIUM
4,0
Source: [email protected]
Attack Vector: local
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: low
Availability: none
Description
AI Translation Available
IBM Maximo Application Suite - Monitor Component 9.1, 9.0, 8.11, and 8.10 could allow an unauthorized user to inject data into log messages due to improper neutralization of special elements when written to log files.
117
Improper Output Neutralization for Logs
DraftCommon Consequences
Security Scopes Affected:
Integrity
Confidentiality
Availability
Non-Repudiation
Potential Impacts:
Modify Application Data
Hide Activities
Execute Unauthorized Code Or Commands
Applicable Platforms
All platforms may be affected
https://www.ibm.com/support/pages/node/7267481