7.5
CVSSv3

CVE-2015-5184

Published: 25/09/2017 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Console: CORS headers set to allow all in Red Hat AMQ.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat jboss enterprise web server 1.0.0

redhat amq

Vendor Advisories

It was found that JBoss A-MQ's Hawtio console setting for the Access-Control-Allow-Origin header permits unrestricted sharing (allow all) An attacker could use this flaw to access sensitive information or perform other attacks ...