IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD reveals potentially sensitive information in trace files that could be read by a local user when webconsole trace is enabled.
2025-02-28T03:15:09.357
2025-07-03T20:44:08.330
Analyzed
CVSSv3.1: 4.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | mq_appliance | < 9.4.2 | Yes |
Application | ibm | mq_appliance | < 9.3.0.27 | Yes |
Application | ibm | mq_appliance | < 9.4.0.10 | Yes |