Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IBM WebSphere Message Broker 6.1 before 6.1.0.11, 7.0 before 7.0.0.5, and 8.0 before 8.0.0.2 has incorrect ownership of certain uninstaller Java Runtime Environment (JRE) files, which might allow local users to gain privileges by leveraging access to uid 501 or gid 300.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM WebSphere Message Broker 文件系统权限安全漏洞
Vulnerability Description
IBM WebSphere Message Broker中存在漏洞,可被恶意本地攻击者利用以提升的权限执行某些操作。该漏洞源于应用程序卸载文件设置不安全文件系统权限,攻击者利用该漏洞以管理用户的权限重写文件并执行程序。早期版本至8.0.0.2版本、7.0.0.5以及6.1.0.11版本中存在漏洞。
CVSS Information
N/A
Vulnerability Type
N/A