CVE-2024-52897

I

BM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.

References
Link Resource
https://www.ibm.com/support/pages/node/7179151 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
OR cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

03 Jul 2025, 19:55

Type Values Removed Values Added
References () https://www.ibm.com/support/pages/node/7179151 - () https://www.ibm.com/support/pages/node/7179151 - Vendor Advisory
CPE cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
First Time Microsoft windows
Linux linux Kernel
Microsoft
Ibm
Linux
Ibm mq
Ibm linux On Ibm Z

10 Jan 2025, 15:15

Type Values Removed Values Added
Summary
  • (es) La consola web de IBM MQ Appliance 9.3 LTS, 9.3 CD y 9.4 LTS podría permitir que un atacante remoto obtenga información confidencial cuando se devuelve un mensaje de error técnico detallado.
Summary (en) IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTS web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned. (en) IBM MQ 9.2 LTS, 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned.
References
  • {'url': 'https://www.ibm.com/support/pages/node/7178086', 'source': '[email protected]'}
  • () https://www.ibm.com/support/pages/node/7179151 -

19 Dec 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-19 18:15

Updated : 2025-08-19 21:31


NVD link : CVE-2024-52897

Mitre link : CVE-2024-52897

CVE.ORG link : CVE-2024-52897


JSON object : View

CWE
CWE-209

Generation of Error Message Containing Sensitive Information