Description
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD console could allow an authenticated user to execute code due to improper neutralization of escape characters.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-5484 | IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD console could allow an authenticated user to execute code due to improper neutralization of escape characters. |
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7183467 |
|
History
Thu, 03 Jul 2025 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm mq Appliance
|
|
| CPEs | cpe:2.3:a:ibm:mq_appliance:*:*:*:*:continuous_delivery:*:*:* cpe:2.3:a:ibm:mq_appliance:*:*:*:*:lts:*:*:* |
|
| Vendors & Products |
Ibm mq Appliance
|
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 28 Feb 2025 02:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD console could allow an authenticated user to execute code due to improper neutralization of escape characters. | |
| Title | IBM MQ code execution | |
| First Time appeared |
Ibm
Ibm mq |
|
| Weaknesses | CWE-150 | |
| CPEs | cpe:2.3:a:ibm:mq:9.3.0:*:*:*:continuous_delivery:*:*:* cpe:2.3:a:ibm:mq:9.3.0:*:*:*:lts:*:*:* cpe:2.3:a:ibm:mq:9.4.0:*:*:*:continuous_delivery:*:*:* cpe:2.3:a:ibm:mq:9.4.0:*:*:*:lts:*:*:* |
|
| Vendors & Products |
Ibm
Ibm mq |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-02-26T18:29:06.206Z
Reserved: 2025-02-02T15:02:19.946Z
Link: CVE-2025-0975
Updated: 2025-02-28T14:16:46.275Z
Status : Analyzed
Published: 2025-02-28T03:15:10.653
Modified: 2025-07-03T20:41:35.323
Link: CVE-2025-0975
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD