6.5
CVE-2025-36005
- EPSS 0.03%
- Published 24.07.2025 14:52:53
- Last modified 22.08.2025 18:08:49
- Source psirt@us.ibm.com
- Teams watchlist Login
- Open Login
IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Internet Pass-Thru could allow a malicious user to obtain sensitive information from another TLS session connection by the proxy to the same hostname and port due to improper certificate validation.
Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users. Login
Data is provided by the National Vulnerability Database (NVD)
Ibm ≫ Mq Operator SwEditionlts Version >= 2.0.0 <= 2.0.29
Ibm ≫ Mq Operator SwEditionsc2 Version >= 3.2.0 <= 3.2.13
Ibm ≫ Mq Operator SwEditioncd Version >= 3.5.1 <= 3.6.0
Ibm ≫ Mq Operator Version3.3.0 SwEditioncd
Ibm ≫ Mq Operator Version3.4.0 SwEditioncd
Ibm ≫ Mq Operator Version3.4.1 SwEditioncd
Ibm ≫ Mq Operator Version3.5.0 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.0 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.0 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.0 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.1 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.1 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.1 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.1 Updater4 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.3 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.4 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.4 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.5 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.5 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.5 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.6 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.10 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.10 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.11 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.11 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.15 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.16 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.16 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.17 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.17 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.17 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.20 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.20 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.21 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.21 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.21 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.3.0.25 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.0 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.0 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.0 Updater3 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.5 Updater1 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.5 Updater2 SwEditionlts
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.6 Updater1 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.6 Updater2 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.7 Updater1 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.10 Updater1 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.10 Updater2 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.11 Updater1 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.11 Updater2 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.0.11 Updater3 SwEditionsc2
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.1.0 Updater1 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.1.0 Updater2 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.1.1 Updater1 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.2.0 Updater1 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.2.0 Updater2 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.2.1 Updater1 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.2.1 Updater2 SwEditioncd
Ibm ≫ Supplied Mq Advanced Container Images Version9.4.3.0 Updater1 SwEditioncd
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.03% | 0.057 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
|
psirt@us.ibm.com | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
|
CWE-295 Improper Certificate Validation
The product does not validate, or incorrectly validates, a certificate.