CVE-2023-46176: IBM MQ privilege escalation
IBM MQ Appliance 9.3 CD could allow a local attacker to gain elevated privileges on the system, caused by improper validation of security keys. IBM X-Force ID: 269535.
Other sources
IBM MQ Appliance could allow a local attacker to gain elevated privileges on the system, caused by improper validation of security keys.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for the IBM MQ privilege escalation?
The vulnerability ID for the IBM MQ privilege escalation is CVE-2023-46176.
What is the severity of CVE-2023-46176?
The severity of CVE-2023-46176 is medium with a severity value of 6.7.
What is affected by CVE-2023-46176?
IBM MQ Appliance version 9.3 CD is affected by CVE-2023-46176.
How can a local attacker exploit CVE-2023-46176?
A local attacker can exploit CVE-2023-46176 by gaining elevated privileges on the system due to improper validation of security keys in IBM MQ Appliance 9.3 CD.
Where can I find more information about CVE-2023-46176?
You can find more information about CVE-2023-46176 on the IBM Support page (https://www.ibm.com/support/pages/node/7060769) and the IBM X-Force ID page (https://exchange.xforce.ibmcloud.com/vulnerabilities/269535).