CVE-2019-4731Sensitive Information Exposure in IBM MQ Appliance

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 88.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 28
Latest updateMay 24

Description

IBM MQ Appliance 9.1.4.CD could allow a local attacker to obtain highly sensitive information by inclusion of sensitive data within trace. IBM X-Force ID: 172616.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

CVEListV5ibm/mq_appliance9.1.4.CD
NVDibm/mq_appliance9.1.4

Patches

🔴Vulnerability Details

2
GHSA
GHSA-43gf-9mf8-44g5: IBM MQ Appliance 92022-05-24
CVEList
CVE-2019-4731: IBM MQ Appliance 92020-07-28
CVE-2019-4731 — Sensitive Information Exposure in IBM | cvebase