Medium severity5.1NVD Advisory· Published May 19, 2023· Updated Jun 17, 2026
CVE-2023-28950
CVE-2023-28950
Description
IBM MQ 8.0, 9.0, 9.1, 9.2, and 9.3 could disclose sensitive user information from a trace file if that functionality has been enabled. IBM X-Force ID: 251358.
Affected products
98.0, 9.0, 9.1, 9.2, and 9.3+ 7 more
- (no CPE)range: 8.0, 9.0, 9.1, 9.2, and 9.3
- cpe:2.3:a:ibm:mq:8.0.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:mq:9.0.0.0:*:*:*:lts:*:*:*
- cpe:2.3:a:ibm:mq:9.1.0.0:*:*:*:lts:*:*:*
- cpe:2.3:a:ibm:mq:9.2.0:*:*:*:continuous_delivery:*:*:*
- cpe:2.3:a:ibm:mq:9.2.0:*:*:*:lts:*:*:*
- cpe:2.3:a:ibm:mq:9.3.0:*:*:*:continuous_delivery:*:*:*
- cpe:2.3:a:ibm:mq:9.3.0:*:*:*:lts:*:*:*
- IBM/MQv5Range: 8.0, 9.0 LTS, 9.1 LTS, 9.2 LTS, 9.2 CD, 9.3 LTS, 9.3 CD
Patches
Vulnerability mechanics
References
2- https//www.ibm.com/support/pages/node/6985837nvdPatchVendor Advisory
- exchange.xforce.ibmcloud.com/vulnerabilities/251358nvdVDB EntryVendor Advisory
News mentions
0No linked articles in our index yet.