Required CVE Record Information
Description
The Telemetry Component in WebSphere MQ 8.0.0.1 before p000-001-L140910 allows remote attackers to bypass authentication by setting the JAASConfig property in an MQTT client configuration.
References 3 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- http://www-01.ibm.com/support/docview.wss?uid=swg21686210 x_transferred
- secunia.com: 61064 third-party-advisoryx_transferred
- exchange.xforce.ibmcloud.com: ibm-websphere-cve20146116-sec-bypass(96213) vdb-entryx_transferred