Vulnerabilities > IBM > MQ Appliance > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-11-30 | CVE-2021-39000 | Information Exposure vulnerability in IBM MQ Appliance 9.2.0.0 IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local attacker to obtain sensitive information by inclusion of sensitive data within diagnostics. | 2.1 |
2021-11-30 | CVE-2021-38999 | Information Exposure vulnerability in IBM MQ Appliance 9.2.0.0 IBM MQ Appliance could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trace. | 2.1 |
2021-11-30 | CVE-2021-38958 | Unspecified vulnerability in IBM MQ Appliance 9.2.0.0 IBM MQ Appliance 9.2 CD and 9.2 LTS is affected by a denial of service attack caused by a concurrency issue. | 2.1 |
2020-11-18 | CVE-2020-4592 | Unspecified vulnerability in IBM MQ Appliance 9.1.0.0 IBM MQ Appliance 9.1.CD and LTS could allow an authenticated user, under nondefault configuration to cause a data corruption attack due to an error when using segmented messages. network ibm | 3.5 |
2020-07-28 | CVE-2019-4731 | Information Exposure vulnerability in IBM MQ Appliance 9.1.4 IBM MQ Appliance 9.1.4.CD could allow a local attacker to obtain highly sensitive information by inclusion of sensitive data within trace. | 2.1 |
2020-07-28 | CVE-2020-4319 | Information Exposure vulnerability in IBM MQ Appliance IBM MQ, IBM MQ Appliance, and IBM MQ for HPE NonStop 8.0, 9.1 LTS, and 9.1 CD could allow under special circumstances, an authenticated user to obtain sensitive information due to a data leak from an error message within the pre-v7 pubsub logic. | 3.5 |
2020-07-27 | CVE-2020-4498 | Information Exposure vulnerability in IBM MQ Appliance IBM MQ Appliance 9.1 LTS and 9.1 CD could allow a local privileged user to obtain highly sensitve information due to inclusion of data within trace files. | 2.1 |
2020-03-16 | CVE-2019-4619 | Information Exposure Through an Error Message vulnerability in IBM MQ, MQ Appliance and Websphere MQ IBM MQ and IBM MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trace. | 2.1 |
2020-03-16 | CVE-2019-4719 | Unspecified vulnerability in IBM MQ, MQ Appliance and Websphere MQ IBM MQ and IBM MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD could allow a local attacker to obtain sensitive information by inclusion of sensitive data within runmqras data. | 2.1 |
2018-12-11 | CVE-2018-1652 | Improper Input Validation vulnerability in IBM Datapower Gateway and MQ Appliance IBM DataPower Gateway 7.1.0.0 through 7.1.0.19, 7.2.0.0 through 7.2.0.16, 7.5.0.0 through 7.5.0.10, 7.5.1.0 through 7.5.1.9, 7.5.2.0 through 7.5.2.9, and 7.6.0.0 through 7.6.0.2 and IBM MQ Appliance 8.0.0.0 through 8.0.0.8 and 9.0.1 through 9.0.5 could allow a local user to cause a denial of service through unknown vectors. | 2.1 |