CVE-2018-1883IBM MQ vulnerability

3 documents3 sources
Severity
7.5HIGHNVD
CNA5.3
EPSS
0.3%
top 46.38%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedDec 7
Latest updateMay 13

Description

A problem within the IBM MQ 9.0.2, 9.0.3, 9.0.4, 9.0.5, and 9.1.0.0 Console REST API Could allow attackers to execute a denial of service attack preventing users from logging into the MQ Console REST API. IBM X-Force ID: 151969.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDibm/mq9.0.29.0.5+1
CVEListV5ibm/mq5 versions+4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vf4r-vmxm-rfm6: A problem within the IBM MQ 92022-05-13
CVEList
CVE-2018-1883: A problem within the IBM MQ 92018-12-07
CVE-2018-1883 — IBM MQ vulnerability | cvebase