CVE Vulnerabilities

CVE-2010-0782

Published: Oct 20, 2010 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

IBM WebSphere MQ 6.x before 6.0.2.10 and 7.x before 7.0.1.3 allows remote attackers to spoof X.509 certificate authentication, and send or receive channel messages, via a crafted Subject Distinguished Name (DN) value in a certificate.

Affected Software

NameVendorStart VersionEnd Version
Websphere_mqIbm6.0 (including)6.0 (including)
Websphere_mqIbm6.0.1.0 (including)6.0.1.0 (including)
Websphere_mqIbm6.0.1.1 (including)6.0.1.1 (including)
Websphere_mqIbm6.0.2.0 (including)6.0.2.0 (including)
Websphere_mqIbm6.0.2.1 (including)6.0.2.1 (including)
Websphere_mqIbm6.0.2.2 (including)6.0.2.2 (including)
Websphere_mqIbm6.0.2.3 (including)6.0.2.3 (including)
Websphere_mqIbm6.0.2.4 (including)6.0.2.4 (including)
Websphere_mqIbm6.0.2.5 (including)6.0.2.5 (including)
Websphere_mqIbm6.0.2.6 (including)6.0.2.6 (including)
Websphere_mqIbm6.0.2.7 (including)6.0.2.7 (including)
Websphere_mqIbm6.0.2.8 (including)6.0.2.8 (including)
Websphere_mqIbm6.0.2.9 (including)6.0.2.9 (including)

References