Lucene search

K
osvGoogleOSV:GHSA-JVPP-HXJJ-5CCC
HistoryAug 01, 2019 - 7:17 p.m.

Improper Input Validation and Missing Authentication for Critical Function in Apache ActiveMQ

2019-08-0119:17:45
Google
osv.dev
9

3.7 Low

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.3%

It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client.

3.7 Low

AI Score

Confidence

High

0.0005 Low

EPSS

Percentile

18.3%