AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-18531

MEDIUM · CVSS 5.3 EPSS 0.38%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM Maximo Application Suite versions 9.2, 9.1, and 9.0 are vulnerable to session data tampering due to the implementation of a weak HMAC session signing secret. This vulnerability could allow remote attackers to manipulate session information, potentially leading to unauthorized access or data integrity issues. Organizations using these versions should prioritize remediation to safeguard against potential exploitation.

CVE
CVE-2026-18531
Severity
MEDIUM
CVSS
5.3
EPSS
0.38%

Original NVD Description

IBM Maximo Application Suite 9.2, 9.1, and 9.0 could allow a remote attacker to tamper with session data due to the use of a weak HMAC session signing secret.

Related CVEs

Other vulnerabilities affecting the same vendor(s)