Lucene search

K
cvelistRedhatCVELIST:CVE-2012-4446
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2012-4446

2022-10-0316:15:34
redhat
www.cve.org
cve-2012-4446
apache qpid
authentication bypass

7 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

67.9%

The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP connections without checking the source user ID, which allows remote attackers to bypass authentication and have other unspecified impact via an AMQP request.

7 High

AI Score

Confidence

Low

0.003 Low

EPSS

Percentile

67.9%