Lucene search

K
redhatcveRedhat.comRH:CVE-2020-13932
HistoryJul 20, 2020 - 8:44 p.m.

CVE-2020-13932

2020-07-2020:44:45
redhat.com
access.redhat.com
17
activemq
mqtt
xss

EPSS

0.005

Percentile

77.4%

A flaw was found in activemq. A specifically crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console’s browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

EPSS

0.005

Percentile

77.4%