Denial of Service Vulnerability in IBM WebSphere MQ Light
CVE-2015-4941
5.3MEDIUM
Summary
IBM WebSphere MQ Light versions prior to 1.0.2 are vulnerable to denial of service due to the mishandling of abbreviated TLS handshakes. This vulnerability can enable remote attackers to crash the MQXR service by exploiting unspecified attack vectors, resulting in service disruption and potential operational issues.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved