CVE-2017-1285: IBM WebSphere Mq

Medium severity, CVSS 6.5. EPSS: 1.7% chance of exploitation in the next 30 days.

IBM WebSphere MQ 9.0.1 and 9.0.2 could allow an authenticated user with authority to send a specially crafted message that would cause a channel to remain in a running state but not process messages. IBM X-Force ID: 125146.

Affected products

  • IBM WebSphere Mq: version 9.0.1 only; version 9.0.2 only

Published 2017-07-12. Last modified 2026-06-17.