Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pw8x-jjg5-pg2p

Опубликовано: 07 сент. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IBM MQ Operator 2.0.26 and 3.2.4 could allow an authenticated user in a specifically defined role, to bypass security restrictions and execute actions against the queue manager.

IBM MQ Operator 2.0.26 and 3.2.4 could allow an authenticated user in a specifically defined role, to bypass security restrictions and execute actions against the queue manager.

EPSS

Процентиль: 9%
0.00033
Низкий

7.5 High

CVSS3

Дефекты

CWE-266

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

IBM MQ 9.1 LTS, 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD could allow an authenticated user in a specifically defined role, to bypass security restrictions and execute actions against the queue manager.

EPSS

Процентиль: 9%
0.00033
Низкий

7.5 High

CVSS3

Дефекты

CWE-266