CVE-2016-3052
MEDIUMIBM Websphere MQ < 8.0.0.5 - Information Disclosure
Title source: ruleDescription
Under non-standard configurations, IBM WebSphere MQ might send password data in clear text over the network. This data could be intercepted using man in the middle techniques.
Scores
CVSS v3
5.9
EPSS
0.0021
EPSS Percentile
42.9%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Classification
CWE
CWE-200
Status
published
Affected Products (2)
ibm/websphere_mq
< 8.0.0.5
IBM Corporation/WebSphere MQ
< 8.0
Timeline
Published
Feb 22, 2017
Tracked Since
Feb 18, 2026