CVE-2014-4793: IBM WebSphere Mq
Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.
IBM WebSphere MQ 8.x before 8.0.0.1 does not properly enforce CHLAUTH rules for blocking client connections in certain circumstances related to the CONNAUTH attribute, which allows remote authenticated users to bypass intended queue-manager access restrictions via unspecified vectors.
Affected products
- IBM WebSphere Mq: version 8.0.0.0 only
Published 2014-10-02. Last modified 2026-06-17.