4.6

CVE-2008-1592

MQSeries 5.1 in IBM WebSphere MQ 5.1 through 5.3.1 on the HP NonStop and Tandem NSK platforms does not require mqm group membership for execution of administrative tasks, which allows local users to bypass intended access restrictions via the runmqsc program, related to "Pathway panels."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Websphere Mq Version 5.1
   Hp ≫ Nonstop
   Tandem Computers ≫ Tandem Operating System Version nsk
Ibm ≫ Websphere Mq Version 5.3
   Hp ≫ Nonstop
   Tandem Computers ≫ Tandem Operating System Version nsk
Ibm ≫ Websphere Mq Version 5.3.1
   Hp ≫ Nonstop
   Tandem Computers ≫ Tandem Operating System Version nsk
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.38% 0.299
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/29360
http://securitytracker.com/id?1019610
http://www-1.ibm.com/support/docview.wss?uid=swg21297035
Patch
http://www.securityfocus.com/bid/28235
http://www.vupen.com/english/advisories/2008/0869