First published: Mon Mar 11 2019(Updated: )
IBM WebSphere 8.0.0.0 through 9.1.1 could allow an authenticated attacker to escalate their privileges when using multiplexed channels. IBM X-Force ID: 153915.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere MQ | >=8.0.0.0<=8.0.0.10 | |
IBM WebSphere MQ | >=9.0.0.0<=9.0.0.5 | |
IBM WebSphere MQ | >=9.1.0.0<=9.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2018-1974.
The severity level of CVE-2018-1974 is high with a severity value of 7.5 out of 10.
An authenticated attacker can escalate their privileges by using multiplexed channels.
IBM WebSphere versions 8.0.0.0 through 9.1.1 are affected by CVE-2018-1974.
Yes, IBM has released a fix for CVE-2018-1974. Please refer to the IBM support documentation for more details.