Vulnerability Details
Basic Information
| Title | CVE-2025-1333 |
|---|---|
| Type | nvd |
| Published | 2025-05-01T22:15:16 |
| Last Seen | 2025-05-01T22:15:30 |
| CVSS Score | 6.0 (MEDIUM) |
CVSS v3 Details
| Attack Vector | LOCAL |
|---|---|
| Attack Complexity | LOW |
| Privileges Required | HIGH |
| User Interaction | NONE |
| Scope | CHANGED |
| Confidentiality Impact | HIGH |
| Integrity Impact | NONE |
| Availability Impact | NONE |
CVE Information
| CVE IDs | CVE-2025-1333 |
|---|---|
| CWE | CWE-214 |
| Bulletin Family | cve |
Description
IBM MQ Container when used with the IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, and MQ Operator SC2 3.2.0 through 3.2.10 and configured with Cloud Pak for Integration Keycloak could disclose sensitive information to a privileged user.
Impact Assessment
| Base Score | 6.0 |
|---|---|
| Severity | MEDIUM |