New! Vulnerability Priority Rating (VPR)
Tenable calculates a dynamic VPR for every vulnerability. VPR combines vulnerability information with threat intelligence and machine learning algorithms to predict which vulnerabilities are most likely to be exploited in attacks. Read more about what VPR is and how it's different from CVSS.
VPR Score: 1.4
Synopsis
A message queuing service installed on the remote host is affected by an information disclosure vulnerability.
Description
According to its self-reported version, the IBM MQ server installed on the remote host is 8.0.0.x prior to 8.0.0.15 or 9.1.0.x prior to 9.1.0.6 LTS or 9.2 CD and is therefore affected by an information disclosure vulnerability. An authenticated, remote attacker can exploit this issue and cause a memory leak and crash the affected host.
Solution
Upgrade to IBM MQ 8.0.0.15, 9.1.0.6 LTS, 9.2 CD or later.