Remote Denial of Service Vulnerability in IBM MessageSight
CVE-2014-0922
Currently unrated
Key Information:
- Vendor
IBM
- Vendor
- CVE Published:
- 15 April 2014
What is CVE-2014-0922?
A vulnerability in IBM MessageSight 1.x prior to version 1.1.0.0-IBM-IMA-IT01015 allows remote attackers to exploit weaknesses in the system's handling of WebSocket MQ Telemetry Transport (MQTT) data. By sending specially crafted MQTT messages, attackers can consume system resources, leading to a denial of service condition. This can disrupt service availability and impact business operations.