IBM WebSphere MQ 8.0.0.2 through 8.0.0.8 and 9.0.0.0 through 9.0.0.3 could allow users to have more authority than they should have if an MQ administrator creates an invalid user group name. IBM X-Force ID: 142888.
References
Link | Resource |
---|---|
https://www.ibm.com/support/docview.wss?uid=ibm10716113 | Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/142888 | Vendor Advisory VDB Entry |
http://www.securityfocus.com/bid/105040 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2018-08-06 14:29
Updated : 2019-10-09 23:38
NVD link : CVE-2018-1551
Mitre link : CVE-2018-1551
JSON object : View
Products Affected
ibm
- websphere_mq
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource