Security Advisory

CVE-2016-0360

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-02-15 19:00:00
Last updated 2024-08-05 22:15:24
Assigner ibm
State PUBLISHED

Description

IBM Websphere MQ JMS 7.0.1, 7.1, 7.5, 8.0, and 9.0 client provides classes that deserialize objects from untrusted sources which could allow a malicious user to execute arbitrary Java code by adding vulnerable classes to the classpath. IBM Reference #: 1983457.