Vulnerabilities
Vulnerable Software
Ibm:  >> Mq  >> 9.1.4  Security Vulnerabilities
IBM MQ 7.5, 8.0, 9.0 LTS, 9.1 CD, and 9.1 LTS stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 211403.
CVSS Score
6.2
EPSS Score
0.001
Published
2021-11-16
IBM MQ and MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 C are vulnerable to a denial of service attack due to an error within the Data Conversion logic. IBM X-Force ID: 177081.
CVSS Score
5.9
EPSS Score
0.006
Published
2020-06-16
IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients based on the certificate distinguished name SSLPEER setting. IBM X-Force ID: 177403.
CVSS Score
5.3
EPSS Score
0.002
Published
2020-06-16
IBM MQ 9.0 and 9.1 is vulnerable to a denial of service attack due to an error in the Channel processing function. IBM X-Force ID: 173625.
CVSS Score
5.9
EPSS Score
0.004
Published
2020-04-16
IBM MQ 9.1.4 could allow a local attacker to obtain sensitive information by inclusion of sensitive data within runmqras data. IBM X-Force ID: 177937.
CVSS Score
5.1
EPSS Score
0.001
Published
2020-04-16


Contact Us

Shodan ® - All rights reserved