IBM MQ Operator是美国国际商业机器(IBM)公司的一种用于管理 IBM MQ 队列管理器生命周期的工具。 IBM MQ Operator 3.2.2版本、2.0.24版本存在安全漏洞,该漏洞源于允许用户在某些配置下绕过身份验证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | MQ Operator | 2.0.24, 3.2.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-38330 | 7.0 HIGH | IBM i privilege escalation |
| CVE-2024-39743 | 5.9 MEDIUM | IBM MQ Container denial of service |
| CVE-2024-37528 | 4.8 MEDIUM | IBM Cloud Pak for Business Automation cross-site scripting |
| CVE-2024-39723 | 4.6 MEDIUM | IBM FlashSystem denial of service |
| CVE-2024-31897 | 4.3 MEDIUM | IBM Cloud Pak for Business Automation server-side request forgery |
No comments yet