Vulnerability Details CVE-2024-27255
IBM MQ Operator 2.0.0 LTS, 2.0.18 LTS, 3.0.0 CD, 3.0.1 CD, 2.4.0 through 2.4.7, 2.3.0 through 2.3.3, 2.2.0 through 2.2.2, and 2.3.0 through 2.3.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 283905.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.0%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2024-27255
-
cpe:2.3:a:ibm:mq_operator:2.0.0
-
cpe:2.3:a:ibm:mq_operator:2.0.18
-
cpe:2.3:a:ibm:mq_operator:2.2.0
-
cpe:2.3:a:ibm:mq_operator:2.2.1
-
cpe:2.3:a:ibm:mq_operator:2.2.2
-
cpe:2.3:a:ibm:mq_operator:2.3.0
-
cpe:2.3:a:ibm:mq_operator:2.3.1
-
cpe:2.3:a:ibm:mq_operator:2.3.2
-
cpe:2.3:a:ibm:mq_operator:2.3.3
-
cpe:2.3:a:ibm:mq_operator:2.4.0
-
cpe:2.3:a:ibm:mq_operator:2.4.1
-
cpe:2.3:a:ibm:mq_operator:2.4.2
-
cpe:2.3:a:ibm:mq_operator:2.4.3
-
cpe:2.3:a:ibm:mq_operator:2.4.4
-
cpe:2.3:a:ibm:mq_operator:2.4.5
-
cpe:2.3:a:ibm:mq_operator:2.4.6
-
cpe:2.3:a:ibm:mq_operator:2.4.7
-
cpe:2.3:a:ibm:mq_operator:3.0.0
-
cpe:2.3:a:ibm:mq_operator:3.0.1