CyberRota Analysis
AI-GeneratedIBM Maximo Application Suite versions 9.2, 9.1, and 9.0 are vulnerable to session data tampering due to the implementation of a weak HMAC session signing secret. This vulnerability could allow remote attackers to manipulate session information, potentially leading to unauthorized access or data integrity issues. Organizations using these versions should prioritize remediation to safeguard against potential exploitation.
CVE
CVE-2026-18531
Severity
MEDIUM
CVSS
5.3
EPSS
0.38%
Original NVD Description
IBM Maximo Application Suite 9.2, 9.1, and 9.0 could allow a remote attacker to tamper with session data due to the use of a weak HMAC session signing secret.
Related CVEs
Other vulnerabilities affecting the same vendor(s)