First published: Tue Nov 13 2018(Updated: )
IBM WebSphere MQ 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, 9.0.1 through 9.0.5, and 9.1.0.0 could allow a local user to inject code that could be executed with root privileges. IBM X-Force ID: 148947.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere MQ | >=8.0.0.0<=8.0.0.10 | |
IBM WebSphere MQ | >=9.0.0.0<=9.0.0.5 | |
IBM WebSphere MQ | >=9.0.1<=9.0.5 | |
IBM WebSphere MQ | =9.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1792 is high with a severity value of 7.8.
CVE-2018-1792 affects IBM WebSphere MQ versions 8.0.0.0 through 8.0.0.10, 9.0.0.0 through 9.0.0.5, 9.0.1 through 9.0.5, and 9.1.0.0.
The vulnerability ID of CVE-2018-1792 is 148947.
A local user can exploit CVE-2018-1792 by injecting code that can be executed with root privileges.
You can find more information about CVE-2018-1792 at the following references: http://www.securityfocus.com/bid/105936, https://exchange.xforce.ibmcloud.com/vulnerabilities/148947, and https://www.ibm.com/support/docview.wss?uid=ibm10734447.