CVE-2016-8915Improper Access Control in Corporation Websphere MQ

Severity
6.5MEDIUMNVD
EPSS
0.3%
top 48.53%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 22
Latest updateMay 17

Description

IBM WebSphere MQ 8.0 could allow an authenticated user with access to the queue manager and queue, to deny service to other channels running under the same process. IBM Reference #: 1998649.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDibm/websphere_mq7 versions+6

Patches

🔴Vulnerability Details

2
GHSA
GHSA-5j6p-82cm-4jjq: IBM WebSphere MQ 82022-05-17
CVEList
CVE-2016-8915: IBM WebSphere MQ 82017-02-22
CVE-2016-8915 — Improper Access Control | cvebase