IBM MQ Managed File Transfer Agent 8.0 and 9.0 sets insecure permissions on certain files it creates. A local attacker could exploit this vulnerability to modify or delete data contained in the files with an unknown impact. IBM X-Force ID: 134391.
2018-01-04T17:29:00.513
2024-11-21T03:22:14.400
Modified
CVSSv3.0: 3.3 (LOW)
AV:L/AC:L/Au:N/C:N/I:P/A:P
3.9
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_mq | 8.0 | Yes |
Application | ibm | websphere_mq | 8.0.0.1 | Yes |
Application | ibm | websphere_mq | 8.0.0.2 | Yes |
Application | ibm | websphere_mq | 8.0.0.3 | Yes |
Application | ibm | websphere_mq | 8.0.0.4 | Yes |
Application | ibm | websphere_mq | 8.0.0.5 | Yes |
Application | ibm | websphere_mq | 8.0.0.6 | Yes |
Application | ibm | websphere_mq | 9.0 | Yes |
Application | ibm | websphere_mq | 9.0.0.1 | Yes |
Application | ibm | websphere_mq | 9.0.1 | Yes |
Application | ibm | websphere_mq | 9.0.2 | Yes |
Application | ibm | websphere_mq | 9.0.3 | Yes |