Cross-site scripting (XSS) vulnerability in createDestination.action in Apache ActiveMQ prior to 5.3.1 allows remote authenticated users to inject arbitrary web script or HTML via the JMSDestination parameter in a queue action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apache activemq |
||
apache activemq 4.0.1 |
||
apache activemq 4.0 |
||
apache activemq 3.0 |
||
apache activemq 2.0 |
||
apache activemq 5.2.0 |
||
apache activemq 5.1.0 |
||
apache activemq 2.1 |
||
apache activemq 1.5 |
||
apache activemq 4.1.0 |
||
apache activemq 4.0.2 |
||
apache activemq 3.2 |
||
apache activemq 3.1 |
||
apache activemq 1.1 |
||
apache activemq 5.0.0 |
||
apache activemq 4.1.1 |
||
apache activemq 3.2.2 |
||
apache activemq 3.2.1 |
||
apache activemq 1.4 |
||
apache activemq 1.3 |
||
apache activemq 1.2 |