4.3
CVSSv2

CVE-2011-1224

Published: 07/07/2011 Updated: 17/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

IBM WebSphere MQ 6.0 prior to 6.0.2.11 and 7.0 prior to 7.0.1.5 does not use the CRL Distribution Points (CDP) certificate extension, which might allow man-in-the-middle malicious users to spoof an SSL partner via a revoked certificate for a (1) client, (2) queue manager, or (3) application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ibm websphere mq 6.0.2.1

ibm websphere mq 6.0.2.4

ibm websphere mq 6.0.2.10

ibm websphere mq 6.0.2.8

ibm websphere mq 6.0.2.2

ibm websphere mq 6.0

ibm websphere mq 6.0.2.9

ibm websphere mq 6.0.1.0

ibm websphere mq 6.0.2.0

ibm websphere mq 6.0.2.3

ibm websphere mq 6.0.1.1

ibm websphere mq 6.0.2.5

ibm websphere mq 6.0.2.7

ibm websphere mq 6.0.2.6

ibm websphere mq 7.0.1.1

ibm websphere mq 7.0.1.3

ibm websphere mq 7.0

ibm websphere mq 7.0.1.2

ibm websphere mq 7.0.0.1

ibm websphere mq 7.0.0.2

ibm websphere mq 7.0.1.4

ibm websphere mq 7.0.1.0