CVE-2024-54173: IBM Mq Appliance
Medium severity, CVSS 4.7. EPSS: 0.1% chance of exploitation in the next 30 days.
IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD reveals potentially sensitive information in trace files that could be read by a local user when webconsole trace is enabled.
Affected products
- IBM Mq Appliance: before 9.4.2 (fixed in 9.4.2); from 9.3.0.0, before 9.3.0.27 (fixed in 9.3.0.27); from 9.4.0.0, before 9.4.0.10 (fixed in 9.4.0.10)
Published 2025-02-28. Last modified 2026-06-17.