This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Ibm First view 2021-01-22
Product Mq Internet Pass-Thru Last view 2022-11-14
Version Type Application
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:a:ibm:mq_internet_pass-thru:2.1:*:*:*:*:*:*:* 2
cpe:2.3:a:ibm:mq_internet_pass-thru:9.2:*:*:*:*:*:*:* 1
cpe:2.3:a:ibm:mq_internet_pass-thru:9.2:*:*:*:lts:*:*:* 1
cpe:2.3:a:ibm:mq_internet_pass-thru:9.2:*:*:*:continuous_delivery:*:*:* 1

Related : CVE

  Date Alert Description
5.5 2022-11-14 CVE-2022-35719

IBM MQ Internet Pass-Thru 2.1, 9.2 LTS and 9.2 CD stores potentially sensitive information in trace files that could be read by a local user.

7.5 2021-01-22 CVE-2020-4766

IBM MQ Internet Pass-Thru 2.1 and 9.2 could allow a remote user to cause a denial of service by sending malformed MQ data requests which would consume all available resources. IBM X-Force ID: 188093.

CWE : Common Weakness Enumeration

%idName
50% (1) CWE-532 Information Leak Through Log Files
50% (1) CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')