IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
2024-12-19T17:15:09.797
2025-07-03T19:52:42.310
Analyzed
CVSSv3.1: 6.2 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | mq | ≤ 9.2.0.30 | Yes |
Application | ibm | mq | ≤ 9.4.1.1 | Yes |
Application | ibm | mq | ≤ 9.3.0.26 | Yes |
Application | ibm | mq | ≤ 9.4.0.7 | Yes |
Operating System | ibm | linux_on_ibm_z | - | No |
Operating System | linux | linux_kernel | - | No |
Operating System | microsoft | windows | - | No |