CVE-2024-52898

I

BM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a local user to obtain sensitive information when a detailed technical error message is returned.

References
Link Resource
https://www.ibm.com/support/pages/node/7179150 Vendor Advisory
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
OR cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

03 Jul 2025, 20:10

Type Values Removed Values Added
Summary
  • (es) La consola web de IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS y 9.4 CD podría permitir que un usuario local obtenga información confidencial cuando se devuelve un mensaje de error técnico detallado.
First Time Microsoft windows
Linux linux Kernel
Microsoft
Ibm
Linux
Ibm mq
Ibm linux On Ibm Z
References () https://www.ibm.com/support/pages/node/7179150 - () https://www.ibm.com/support/pages/node/7179150 - Vendor Advisory
CPE cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:o:ibm:linux_on_ibm_z:-:*:*:*:*:*:*:*
cpe:2.3:a:ibm:mq:*:*:*:*:lts:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

14 Jan 2025, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-14 17:15

Updated : 2025-07-03 20:10


NVD link : CVE-2024-52898

Mitre link : CVE-2024-52898

CVE.ORG link : CVE-2024-52898


JSON object : View

CWE
CWE-209

Generation of Error Message Containing Sensitive Information