QID 731054
Date Published: 2024-01-04
QID 731054: IBM MQ Appliance Directory Traversal Vulnerability (7091235)
IBM MQ is a message oriented middleware that allows independent and non-concurrent applications on a distributed system to communicate with each other.
CVE-2023-46177: IBM MQ is vulnerable to remote directory traversal attacks.
Affected Versions:
IBM MQ Appliance 9.3 LTS prior to 9.3.0.15
IBM MQ Appliance 9.3 CD prior to 9.3.4.1
QID Detection Logic(unauthenticated):
This QID checks for the vulnerable version of IBM MQ
Successful exploitation of this vulnerabilitys could allow a remote attacker to traverse directories on the system.
Solution
Vendor has released the patch, please refer to advisory 7091235.
Vendor References
- 7091235 -
www.ibm.com/support/pages/node/7091235
CVEs related to QID 731054
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 7091235 |
|