IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD stores potentially sensitive information in environment variables that could be obtained by a local user.
2025-02-28T17:15:15.937
2025-06-20T15:30:56.583
Analyzed
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ibm | mq | 9.3.0 | Yes |
Application | ibm | mq | 9.3.0 | Yes |
Application | ibm | mq | 9.4.0 | Yes |
Application | ibm | mq | 9.4.0 | Yes |