IBM WebSphere MQ 8.0.0.2 through 8.0.0.8 and 9.0.0.0 through 9.0.0.3 could allow users to have more authority than they should have if an MQ administrator creates an invalid user group name. IBM X-Force ID: 142888.
References
Link | Resource |
---|---|
https://www.ibm.com/support/docview.wss?uid=ibm10716113 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/142888 | Vendor Advisory VDB Entry |
http://www.securityfocus.com/bid/105040 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2018-08-06 07:29
Updated : 2019-10-09 16:38
NVD link : CVE-2018-1551
Mitre link : CVE-2018-1551
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
ibm
- websphere_mq