4

CVE-2022-42436

IBM MQ 8.0.0, 9.0.0, 9.1.0, 9.2.0, 9.3.0 Managed File Transfer could allow a local user to obtain sensitive information from diagnostic files.  IBM X-Force ID:  238206.

Data is provided by the National Vulnerability Database (NVD)
IbmMq Version8.0.0.0
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.0.0.0 SwEditionlts
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.1.0 SwEditioncontinuous_delivery
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.1.0.0 SwEditionlts
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.2.0 SwEditioncontinuous_delivery
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.2.0 SwEditionlts
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.3.0 SwEditioncontinuous_delivery
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
IbmMq Version9.3.0 SwEditionlts
   IbmAix Version-
   IbmI Version-
   IbmLinux On Ibm Z Version-
   LinuxLinux Kernel Version-
   MicrosoftWindows Version-
   OracleSolaris Version- HwPlatform-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.03% 0.047
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 3.3 1.8 1.4
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
psirt@us.ibm.com 4 2.5 1.4
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N