PT-2018-13062 · Ibm · Ibm Websphere Mq

Publicado

2018-08-06

·

Atualizado

2019-10-09

·

CVE-2018-1551

CVSS v3.1

7.5

Alta

VetorAV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM WebSphere MQ versions 8.0.0.2 through 8.0.0.8 IBM WebSphere MQ versions 9.0.0.0 through 9.0.0.3
Description The issue allows users to have more authority than they should have if an MQ administrator creates an invalid user group name.
Recommendations For IBM WebSphere MQ versions 8.0.0.2 through 8.0.0.8, ensure that MQ administrators create valid user group names to prevent users from having excessive authority. For IBM WebSphere MQ versions 9.0.0.0 through 9.0.0.3, ensure that MQ administrators create valid user group names to prevent users from having excessive authority. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Permission

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-1551

Produtos afetados

Ibm Websphere Mq