Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
apache activemq 5.5.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2013-1879
Cross-site scripting (XSS) vulnerability in scheduled.jsp in Apache ActiveMQ 5.8.0 and previous versions allows remote malicious users to inject arbitrary web script or HTML via vectors involving the "cron of a message."
Apache Activemq 5.3.0
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.7.0
Apache Activemq 5.0.0
Apache Activemq 5.1.0
Apache Activemq
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2013-1880
Cross-site scripting (XSS) vulnerability in the Portfolio publisher servlet in the demo web application in Apache ActiveMQ prior to 5.9.0 allows remote malicious users to inject arbitrary web script or HTML via the refresh parameter to demo/portfolioPublish, a different vulnerabi...
Apache Activemq 5.3.0
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.7.0
Apache Activemq 5.0.0
Apache Activemq 5.1.0
Apache Activemq
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2012-6092
Multiple cross-site scripting (XSS) vulnerabilities in the web demos in Apache ActiveMQ prior to 5.8.0 allow remote malicious users to inject arbitrary web script or HTML via (1) the refresh parameter to PortfolioPublishServlet.java (aka demo/portfolioPublish or Market Data Publi...
Apache Activemq 5.3.0
Apache Activemq 4.1.0
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.0.0
Apache Activemq 4.0
Apache Activemq 4.0.2
Apache Activemq
Apache Activemq 4.0.1
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 4.1.1
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2013-3060
The web console in Apache ActiveMQ prior to 5.8.0 does not require authentication, which allows remote malicious users to obtain sensitive information or cause a denial of service via HTTP requests.
Apache Activemq 5.3.0
Apache Activemq 4.1.0
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.0.0
Apache Activemq 4.0
Apache Activemq 4.0.2
Apache Activemq
Apache Activemq 4.0.1
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 4.1.1
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2012-6551
The default configuration of Apache ActiveMQ prior to 5.8.0 enables a sample web application, which allows remote malicious users to cause a denial of service (broker resource consumption) via HTTP requests.
Apache Activemq 5.3.0
Apache Activemq 4.1.0
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.0.0
Apache Activemq 4.0
Apache Activemq 4.0.2
Apache Activemq
Apache Activemq 4.0.1
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 4.1.1
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2014-8110
Multiple cross-site scripting (XSS) vulnerabilities in the web based administration console in Apache ActiveMQ 5.x prior to 5.10.1 allow remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Apache Activemq 5.3.0
Apache Activemq 5.8.0
Apache Activemq 5.4.3
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.9.0
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.7.0
Apache Activemq 5.0.0
Apache Activemq 5.10.0
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 5.9.1
Apache Activemq 5.6.0
Apache Activemq 5.4.2
NA
CVE-2015-1830
Directory traversal vulnerability in the fileserver upload/download functionality for blob messages in Apache ActiveMQ 5.x prior to 5.11.2 for Windows allows remote malicious users to create JSP files in arbitrary directories via unspecified vectors.
Apache Activemq 5.0.0
Apache Activemq 5.1.0
Apache Activemq 5.2.0
Apache Activemq 5.3.0
Apache Activemq 5.3.1
Apache Activemq 5.3.2
Apache Activemq 5.4.0
Apache Activemq 5.4.1
Apache Activemq 5.4.2
Apache Activemq 5.4.3
Apache Activemq 5.5.0
Apache Activemq 5.5.1
Apache Activemq 5.6.0
Apache Activemq 5.7.0
Apache Activemq 5.8.0
Apache Activemq 5.9.0
Apache Activemq 5.9.1
Apache Activemq 5.10.0
Apache Activemq 5.10.1
Apache Activemq 5.10.2
Apache Activemq 5.11.0
Apache Activemq 5.11.1
2 EDB exploits
1 Github repository
NA
CVE-2015-6524
The LDAPLoginModule implementation in the Java Authentication and Authorization Service (JAAS) in Apache ActiveMQ 5.x prior to 5.10.1 allows wildcard operators in usernames, which allows remote malicious users to obtain credentials via a brute force attack. NOTE: this identifier ...
Fedoraproject Fedora 22
Fedoraproject Fedora 23
Apache Activemq 5.3.0
Apache Activemq 5.8.0
Apache Activemq 5.4.3
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.4.1
Apache Activemq 5.9.0
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.7.0
Apache Activemq 5.0.0
Apache Activemq 5.10.0
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
Apache Activemq 5.9.1
Apache Activemq 5.6.0
Apache Activemq 5.4.2
9.8
CVSSv3
CVE-2015-5254
Apache ActiveMQ 5.x prior to 5.13.0 does not restrict the classes that can be serialized in the broker, which allows remote malicious users to execute arbitrary code via a crafted serialized Java Message Service (JMS) ObjectMessage object.
Redhat Openshift 2.0
Apache Activemq 5.3.0
Apache Activemq 5.11.1
Apache Activemq 5.8.0
Apache Activemq 5.4.3
Apache Activemq 5.4.0
Apache Activemq 5.5.1
Apache Activemq 5.12.0
Apache Activemq 5.4.1
Apache Activemq 5.9.0
Apache Activemq 5.11.2
Apache Activemq 5.11.0
Apache Activemq 5.3.1
Apache Activemq 5.2.0
Apache Activemq 5.7.0
Apache Activemq 5.0.0
Apache Activemq 5.12.1
Apache Activemq 5.10.1
Apache Activemq 5.10.0
Apache Activemq 5.1.0
Apache Activemq 5.5.0
Apache Activemq 5.3.2
5 Github repositories
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started