CVE-2009-0905
1.7
Vector
AV:L/AC:L/Au:S/C:N/I:P/A:N
Exploitability: 3.1 / Impact: 2.9
Source: NVD
Description
IBM WebSphere MQ 6.0 before 6.0.2.8 and 7.0 before 7.0.1.0 does not properly handle long group names, which might allow local users to gain privileges by leveraging combinations of group names with the same initial substring.
Affected (14)
Products: Ibm: Websphere Mq
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.0.1.0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 7.0.0.1 |
References (4)
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.