This CPE summary could be partial or incomplete. Please contact us for a detailed listing.


Vendor Ibm First view 2019-03-11
Product Websphere Mq Last view 2019-09-27
Version Type Application
Update *  
Edition *  
Language *  
Sofware Edition *  
Target Software *  
Target Hardware *  
Other *  
CPE Product cpe:2.3:a:ibm:websphere_mq

Activity : Overall

Related : CVE

  Date Alert Description
6.5 2019-09-27 CVE-2019-4141

IBM MQ -, -, -, -, -, and 9.1.1 - 9.1.2 is vulnerable to a denial of service attack caused by a memory leak in the clustering code. IBM X-Force ID: 158337.

7.8 2019-05-23 CVE-2019-4078

IBM WebSphere MQ through and through 9.1.1 could allow a local non privileged user to execute code as an administrator due to incorrect permissions set on MQ installation directories. IBM X-Force ID: 157190.

5.5 2019-05-23 CVE-2019-4039

IBM WebSphere MQ through and through 9.1.1 could allow a local attacker to cause a denial of service within the error log reporting system. IBM X-Force ID: 156163.

5.9 2019-04-15 CVE-2018-1925

IBM WebShere MQ,, 9.1.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 152925.

7.8 2019-03-11 CVE-2018-1998

IBM WebSphere MQ through 9.1.1 could allow a local user to inject code that could be executed with root privileges. This is due to an incomplete fix for CVE-2018-1792. IBM X-ForceID: 154887.

7.5 2019-03-11 CVE-2018-1974

IBM WebSphere through 9.1.1 could allow an authenticated attacker to escalate their privileges when using multiplexed channels. IBM X-Force ID: 153915.

CWE : Common Weakness Enumeration

20% (1) CWE-732 Incorrect Permission Assignment for Critical Resource
20% (1) CWE-532 Information Leak Through Log Files
20% (1) CWE-401 Failure to Release Memory Before Removing Last Reference ('Memory L...
20% (1) CWE-326 Inadequate Encryption Strength
20% (1) CWE-78 Improper Sanitization of Special Elements used in an OS Command ('O...