CVE-2014-4793: IBM WebSphere Mq

Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.

IBM WebSphere MQ 8.x before 8.0.0.1 does not properly enforce CHLAUTH rules for blocking client connections in certain circumstances related to the CONNAUTH attribute, which allows remote authenticated users to bypass intended queue-manager access restrictions via unspecified vectors.

Affected products

  • IBM WebSphere Mq: version 8.0.0.0 only

Published 2014-10-02. Last modified 2026-06-17.