PT-2017-12974 · Ibm · Ibm Websphere Mq
Published
2017-07-10
·
Updated
2019-10-03
·
CVE-2017-1337
CVSS v3.1
8.1
High
| Vector | AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
IBM WebSphere MQ versions 9.0.1 through 9.0.2
Description
The issue concerns the incorrect transmission of user credentials in plain text by the Java/JMS application.
Recommendations
For IBM WebSphere MQ versions 9.0.1 through 9.0.2, update to a version that includes the fix for this issue to prevent the transmission of user credentials in plain text.
Fix
Insufficiently Protected Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Websphere Mq