CVE-2024-54173

IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD reveals potentially sensitive information in trace files that could be read by a local user when webconsole trace is enabled.
References
Link Resource
https://www.ibm.com/support/pages/node/7183370 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*

History

03 Jul 2025, 20:44

Type Values Removed Values Added
Summary
  • (es) IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS y 9.4 CD revelan información potencialmente confidencial en archivos de rastreo que un usuario local podría leer cuando el rastreo de la consola web está habilitado.
First Time Ibm mq Appliance
Ibm
References () https://www.ibm.com/support/pages/node/7183370 - () https://www.ibm.com/support/pages/node/7183370 - Vendor Advisory
CPE cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:*
cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:*

28 Feb 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-02-28 03:15

Updated : 2025-07-03 20:44


NVD link : CVE-2024-54173

Mitre link : CVE-2024-54173

CVE.ORG link : CVE-2024-54173


JSON object : View

Products Affected

ibm

  • mq_appliance
CWE
CWE-1323

Improper Management of Sensitive Trace Data