CVE-2024-25015
HIGHDescription
IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial of service by sending HTTP requests that would consume all available resources. IBM X-Force ID: 281278.
Is your site exposed to CVE-2024-25015?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| ibm | mq |
| ibm | mq |
| ibm | mq |
| ibm | aix |
| ibm | linux_on_ibm_z |
| linux | linux_kernel |
| microsoft | windows |
References
Frequently Asked Questions
What is CVE-2024-25015? +
How severe is CVE-2024-25015? +
What products are affected by CVE-2024-25015? +
How do I check if I'm vulnerable to CVE-2024-25015? +
Related Vulnerabilities
Possible External Service Interaction attack in iManager has been discovered in OpenText™ iManager 3.2.6.0000.
QTI Neon is a minimal, game-agnostic, relay-based UDP multiplayer protocol library. In version 1.0.0, the relay's handleReconnectRequest forwards RECONNECT_REQUEST packets …
An issue was discovered in Technitium through 11.0.2. The forwarding mode enables attackers to create a query loop using Technitium …
An issue was discovered in Technitium through 11.0.2. It enables attackers to launch amplification attacks (3 times more than other …
Technitium 11.5.3 allows remote attackers to cause a denial of service (bandwidth amplification) because the DNSBomb manipulation causes accumulation of …
It was not possible to govern the rate at which the broker would respond to an echo flow, enabling an …