Denial of Service Vulnerability in IBM WebSphere MQ Light
CVE-2015-4942
5.3MEDIUM
Summary
IBM WebSphere MQ Light versions prior to 1.0.2 are susceptible to a denial of service attack that can be executed by remote attackers. By repeatedly connecting and disconnecting to the MQXR service, an attacker can trigger service crashes, rendering the messaging service unavailable. This vulnerability requires no advanced skills, making it a significant concern for organizations using this product.
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved