CVE-2018-1998 vulnerability in IBM Products
Published on March 11, 2019
IBM WebSphere MQ 8.0.0.0 through 9.1.1 could allow a local user to inject code that could be executed with root privileges. This is due to an incomplete fix for CVE-2018-1792. IBM X-ForceID: 154887.
Products Associated with CVE-2018-1998
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-1998 are published in these products:
Affected Versions
IBM MQ:- Version 9.0.0.1 is affected.
- Version 8.0.0.1 is affected.
- Version 8.0.0.2 is affected.
- Version 8.0.0.3 is affected.
- Version 8.0.0.4 is affected.
- Version 8.0.0.5 is affected.
- Version 8.0.0.6 is affected.
- Version 8.0.0.7 is affected.
- Version 9.0.0.2 is affected.
- Version 8.0.0.8 is affected.
- Version 8.0.0.9 is affected.
- Version 9.0.0.3 is affected.
- Version 8.0.0.0 is affected.
- Version 8.0.0.10 is affected.
- Version 9.0.0.0 is affected.
- Version 9.0.0.4 is affected.
- Version 9.0.0.5 is affected.
- Version 9.1.1 is affected.
Exploit Probability
EPSS
0.10%
Percentile
28.11%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.