4.3
CVE-2011-1224
- EPSS 0.12%
- Veröffentlicht 07.07.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 does not use the CRL Distribution Points (CDP) certificate extension, which might allow man-in-the-middle attackers to spoof an SSL partner via a revoked certificate for a (1) client, (2) queue manager, or (3) application.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Websphere Mq Version6.0
Ibm ≫ Websphere Mq Version6.0.1.0
Ibm ≫ Websphere Mq Version6.0.1.1
Ibm ≫ Websphere Mq Version6.0.2.0
Ibm ≫ Websphere Mq Version6.0.2.1
Ibm ≫ Websphere Mq Version6.0.2.2
Ibm ≫ Websphere Mq Version6.0.2.3
Ibm ≫ Websphere Mq Version6.0.2.4
Ibm ≫ Websphere Mq Version6.0.2.5
Ibm ≫ Websphere Mq Version6.0.2.6
Ibm ≫ Websphere Mq Version6.0.2.7
Ibm ≫ Websphere Mq Version6.0.2.8
Ibm ≫ Websphere Mq Version6.0.2.9
Ibm ≫ Websphere Mq Version6.0.2.10
Ibm ≫ Websphere Mq Version7.0
Ibm ≫ Websphere Mq Version7.0.0.1
Ibm ≫ Websphere Mq Version7.0.0.2
Ibm ≫ Websphere Mq Version7.0.1.0
Ibm ≫ Websphere Mq Version7.0.1.1
Ibm ≫ Websphere Mq Version7.0.1.2
Ibm ≫ Websphere Mq Version7.0.1.3
Ibm ≫ Websphere Mq Version7.0.1.4
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.318 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|