CVE Published: 15/02/2017 |
CVE Updated: 05/08/2024 |
CVE Year: 2016 Source: ibm |
Vendor: IBM Corporation |
Product: WebSphere MQ Status : PUBLISHED
CVE-2016-0360 Description
IBM Websphere MQ JMS 7.0.1, 7.1, 7.5, 8.0, and 9.0 client provides classes that deserialize objects from untrusted sources which could allow a malicious user to execute arbitrary Java code by adding vulnerable classes to the classpath. IBM Reference #: 1983457.