5.5
CVSSv3

CVE-2023-4066

Published: 27/09/2023 Updated: 07/11/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A flaw was found in Red Hat's AMQ Broker, which stores certain passwords in a secret security-properties-prop-module, defined in ActivemqArtemisSecurity CR; however, they are shown in plaintext in the StatefulSet details yaml of AMQ Broker.

Vulnerable Product Search on Vulmon Subscribe to Product

redhat jboss middleware 1

redhat jboss a-mq 7

redhat openshift_container_platform 4.11

redhat openshift_container_platform 4.12

Vendor Advisories

Synopsis Moderate: AMQ Broker 7111OPR2GA Container Images Release Type/Severity Security Advisory: Moderate Topic This is the multiarch release of the AMQ Broker 7111 aligned Operator and associated container images on Red Hat Enterprise Linux 8 for the OpenShift Container PlatformRed Hat Product Security has rated this update as havi ...
Description<!----> This CVE is under investigation by Red Hat Product Security ...