Lucene search

K
osvGoogleOSV:GHSA-P358-58JJ-HP65
HistoryMay 17, 2022 - 3:46 a.m.

Improper Authentication in Apache ActiveMQ

2022-05-1703:46:28
Google
osv.dev
21
apache activemq
improper authentication
remote attacks
http requests
denial of service

EPSS

0.005

Percentile

75.5%

The web console in Apache ActiveMQ before 5.8.0 does not require authentication, which allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests.

EPSS

0.005

Percentile

75.5%