Security Advisory

CVE-2016-0782

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-08-05 15:00:00
Last updated 2024-08-05 22:30:04
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

The administration web console in Apache ActiveMQ 5.x before 5.11.4, 5.12.x before 5.12.3, and 5.13.x before 5.13.2 allows remote authenticated users to conduct cross-site scripting (XSS) attacks and consequently obtain sensitive information from a Java memory dump via vectors related to creating a queue.