9.8
/ 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
IBM Maximo Application Suite 9.0.0 through 9.0.15 and 9.1.0 through 9.1.4 could allow a remote attacker to bypass authentication mechanisms and gain unauthorized access to the application.
AI Analysis
Remote authentication bypass vulnerability in IBM Maximo Application Suite
Basic Information
ID
CVE-2025-36386
Source
ibm
Published
Oct 28, 2025 at 15:56
Modified
Oct 28, 2025 at 16:57
Affected Product
Vendor
IBM
Product
IBM Maximo Application Suite
Version
9.0.0
Affected Versions
IBM IBM Maximo Application Suite 9.0.0
IBM IBM Maximo Application Suite 9.1.0
IBM IBM Maximo Application Suite 9.1.0
CWE Classification
AI Assessment
AI Score
9.8 / 10
AI Severity
Critical
Vendor
IBM
Product
IBM Maximo Application Suite
Version
9.0.0-9.0.15, 9.1.0-9.1.4