Vulnerabilities > IBM > Websphere MQ > 5.3

DATE CVE VULNERABILITY TITLE RISK
2009-02-24 CVE-2009-0439 Permissions, Privileges, and Access Controls vulnerability in IBM Websphere MQ
Unspecified vulnerability in the queue manager in IBM WebSphere MQ (WMQ) 5.3, 6.0 before 6.0.2.6, and 7.0 before 7.0.0.2 allows local users to gain privileges via vectors related to the (1) setmqaut, (2) dmpmqaut, and (3) dspmqaut authorization commands.
local
low complexity
ibm CWE-264
7.2
2008-03-31 CVE-2008-1592 Permissions, Privileges, and Access Controls vulnerability in IBM Websphere MQ 5.1/5.3/5.3.1
MQSeries 5.1 in IBM WebSphere MQ 5.1 through 5.3.1 on the HP NonStop and Tandem NSK platforms does not require mqm group membership for execution of administrative tasks, which allows local users to bypass intended access restrictions via the runmqsc program, related to "Pathway panels."
local
low complexity
hp tandem-computers ibm CWE-264
4.6
2008-03-04 CVE-2008-1130 Improper Authentication vulnerability in IBM Websphere MQ 5.3/6
Unspecified vulnerability in IBM WebSphere MQ 6.0.x before 6.0.2.2 and 5.3 before Fix Pack 14 allows attackers to bypass access restrictions for a queue manager via a SVRCONN (MQ client) channel.
local
low complexity
ibm CWE-287
6.6