IBM Security Bulletin: IBM Maximo Asset Management contains a misconfiguration that could allow a remote attacker to gain elevated privileges on the system (CVE-2015-1927)

IBM Maximo Asset Management configuration files set the attribute serveServletsByClassnameEnabled to true. This vulnerability could allow a remote attacker to gain elevated privileges on the system. The vulnerability affects Maximo Asset Management, Maximo...

from IBM Product Security Incident Response Team http://ift.tt/1QXWHlT