First published: Tue Nov 23 2021(Updated: )
IBM MQ Appliance could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trace.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere MQ Appliance | <=9.2 CD | |
IBM WebSphere MQ Appliance | <=9.2 LTS | |
IBM WebSphere MQ Appliance | =9.2.0.0 | |
IBM WebSphere MQ Appliance | =9.2.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-38999.
The severity of CVE-2021-38999 is medium.
CVE-2021-38999 allows a local attacker to obtain sensitive information by including sensitive data within trace.
Versions 9.2 CD and 9.2 LTS of IBM MQ Appliance are affected by CVE-2021-38999.
To fix CVE-2021-38999, IBM recommends applying the necessary patches and updates provided by IBM.