IBM WebSphere MQ 8.0.0.0 through 9.1.1 could allow a local user to inject code that could be executed with root privileges. This is due to an incomplete fix for CVE-2018-1792. IBM X-ForceID: 154887.
2019-03-11T22:29:00.750
2024-11-21T04:00:43.227
Modified
CVSSv3.0: 8.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | websphere_mq | ≤ 8.0.0.10 | Yes |
Application | ibm | websphere_mq | ≤ 9.0.0.5 | Yes |
Application | ibm | websphere_mq | ≤ 9.1.0.1 | Yes |