CVE-2026-18531

IBM Maximo Application Suite 9.2, 9.1, and 9.0 could allow a remote attacker to tamper with session data due to the use of a weak HMAC session signing secret.
References
Link Resource
https://www.ibm.com/support/pages/node/7282362 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:maximo_application_suite:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:maximo_application_suite:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:maximo_application_suite:9.2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-05 16:16

Updated : 2026-08-10 16:10


NVD link : CVE-2026-18531

Mitre link : CVE-2026-18531

CVE.ORG link : CVE-2026-18531


JSON object : View

Products Affected

ibm

  • maximo_application_suite
CWE
CWE-330

Use of Insufficiently Random Values