TROYANOSYVIRUS
Back to CVEs

CVE-2021-38949

MEDIUM
5.5

Description

IBM MQ 7.5, 8.0, 9.0 LTS, 9.1 CD, and 9.1 LTS stores user credentials in plain clear text which can be read by a local user. IBM X-Force ID: 211403.

CVE Details

CVSS v3.1 Score5.5
SeverityMEDIUM
CVSS VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Attack VectorLOCAL
ComplexityLOW
Privileges RequiredLOW
User InteractionNONE
Published11/16/2021
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

hp:hp-uxibm:aixibm:iibm:mqibm:websphere_mqlinux:linux_kernelmicrosoft:windowsoracle:solaris

Weaknesses (CWE)

CWE-312

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.