CVE-2008-1592

MQSeries 5.1 in IBM WebSphere MQ 5.1 through 5.3.1 on the HP NonStop and Tandem NSK platforms does not require mqm group membership for execution of administrative tasks, which allows local users to bypass intended access restrictions via the runmqsc program, related to "Pathway panels."
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:hp:nonstop:*:*:*:*:*:*:*:*
cpe:2.3:o:tandem_computers:tandem_operating_system:nsk:*:*:*:*:*:*:*
OR cpe:2.3:a:ibm:websphere_mq:5.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_mq:5.3:*:*:*:*:*:*:*
cpe:2.3:a:ibm:websphere_mq:5.3.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-03-31 23:44

Updated : 2024-02-28 11:21


NVD link : CVE-2008-1592

Mitre link : CVE-2008-1592

CVE.ORG link : CVE-2008-1592


JSON object : View

Products Affected

hp

  • nonstop

ibm

  • websphere_mq

tandem_computers

  • tandem_operating_system
CWE
CWE-264

Permissions, Privileges, and Access Controls