Improper Access Control
Discription

Apache ActiveMQ is vulnerable to Improper Access Control. The vulnerability is due to a default configuration which does not secure the API web context, allowing unrestricted use of the Jolokia JMX REST API and the Message REST API. This vulnerability potentially enables anyone to interact with the broker, produce/consume messages and manage destinations without…Read More

Back to Main

Subscribe for the latest news: