IBM MQ是美国国际商业机器(IBM)公司的一款消息传递中间件产品。该产品主要为面向服务的体系结构(SOA)提供可靠的、经过验证的消息传递主干网。 IBM MQ Container存在加密问题漏洞,该漏洞源于使用比预期更弱的加密算法,这可能允许攻击者解密高度敏感的信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | MQ Operator | 2.4.0 ~ 2.4.8 |
cpe:2.3:a:ibm:mq_operator:3.0.0:*:*:*:continuous_delivery:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-37526 | 6.5 MEDIUM | IBM Watson Query on Cloud Pak for Data information disclosure |
| CVE-2024-28786 | 6.5 MEDIUM | IBM QRadar SIEM information disclosure |
| CVE-2023-52292 | 6.4 MEDIUM | IBM Sterling File Gateway cross-site scripting |
| CVE-2024-38325 | 5.9 MEDIUM | IBM Storage Defender information disclosure |
| CVE-2024-38320 | 5.9 MEDIUM | IBM Storage Protect for Virtual Environments: Data Protection for VMware information discl |
| CVE-2023-46187 | 5.4 MEDIUM | IBM InfoSphere Master Data Management cross-site scripting |
| CVE-2024-37527 | 5.4 MEDIUM | IBM OpenPages with Watson cross-site scripting |
| CVE-2024-28771 | 4.8 MEDIUM | IBM Security Directory Integrator information disclosure |
| CVE-2024-28770 | 4.8 MEDIUM | IBM Security Directory Integrator information disclosure |
| CVE-2024-22316 | 4.3 MEDIUM | IBM Sterling File Gateway improper access control |
| CVE-2023-47159 | 4.3 MEDIUM | IBM Sterling File Gateway information disclosure |
| CVE-2024-28766 | 2.4 LOW | IBM Security Directory Integrator information disclosure |
No comments yet