IBM MQ Internet Pass-Thru是美国国际商业机器(IBM)公司的一个用于支持在Internet上的远程站点之间实现消息传递的产品。该产品为IBM MQ的扩展功能组件,可充当在交互过程中建立协议通道或代理,使IBM MQ通道协议通过防火墙的进出更加简单和易于管理。 IBM MQ Internet Pass-Thru 2.1、9.2 LTS 和 9.2 CD版本存在日志信息泄露漏洞,该漏洞源于将潜在敏感信息存储在本地用户可以读取的跟踪文件中。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | MQ Internet Pass-Thru | 2.1, 9.2 LTS and 9.2 CD | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-34320 | 5.9 MEDIUM | IBM CICS TX information disclosure |
| CVE-2022-34319 | 5.9 MEDIUM | IBM CICS TX information disclosure |
| CVE-2022-34317 | 5.4 MEDIUM | IBM CICS TX cross-site scripting |
| CVE-2022-34318 | 5.4 MEDIUM | IBM CICS TX clickjacking |
| CVE-2022-34315 | 5.4 MEDIUM | IBM CICS TX cross-site scripting |
| CVE-2022-38705 | 5.3 MEDIUM | IBM CICS TX phishing |
| CVE-2022-34329 | 5.3 MEDIUM | IBM CICS TX information disclosure |
| CVE-2022-34313 | 4.3 MEDIUM | IBM CICS TX Standard is vulnerable to allowing attackers access to an application via inse |
| CVE-2022-34314 | 4.0 MEDIUM | IBM CICS TX 信息泄露漏洞 |
| CVE-2022-34312 | 4.0 MEDIUM | IBM CICS TX information disclosure |
| CVE-2022-34316 | 3.7 LOW | IBM CICS TX information disclosure |
No comments yet