CVE-2009-0439IBM Websphere MQ vulnerability

CWE-2643 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.1%
top 79.02%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 24
Latest updateMay 2

Description

Unspecified vulnerability in the queue manager in IBM WebSphere MQ (WMQ) 5.3, 6.0 before 6.0.2.6, and 7.0 before 7.0.0.2 allows local users to gain privileges via vectors related to the (1) setmqaut, (2) dmpmqaut, and (3) dspmqaut authorization commands.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDibm/websphere_mq12 versions+11

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pqm8-cwcr-v38r: Unspecified vulnerability in the queue manager in IBM WebSphere MQ (WMQ) 52022-05-02
CVEList
CVE-2009-0439: Unspecified vulnerability in the queue manager in IBM WebSphere MQ (WMQ) 52009-02-24
CVE-2009-0439 — IBM Websphere MQ vulnerability | cvebase