IBM MQ Operator是美国国际商业机器(IBM)公司的一种用于管理 IBM MQ 队列管理器生命周期的工具。 IBM MQ Operator 3.2.2版本、2.0.24版本存在安全漏洞,该漏洞源于允许用户在某些配置下因部分字符串比较漏洞而导致拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| IBM | MQ Operator | 2.0.24, 3.2.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-39742 | 8.1 HIGH | IBM MQ Container authentication bypass |
| CVE-2024-38330 | 7.0 HIGH | IBM i privilege escalation |
| CVE-2024-37528 | 4.8 MEDIUM | IBM Cloud Pak for Business Automation cross-site scripting |
| CVE-2024-39723 | 4.6 MEDIUM | IBM FlashSystem denial of service |
| CVE-2024-31897 | 4.3 MEDIUM | IBM Cloud Pak for Business Automation server-side request forgery |
No comments yet