Описание
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2014-9494
- https://exchange.xforce.ibmcloud.com/vulnerabilities/99685
- https://groups.google.com/forum/#!topic/rabbitmq-users/DMkypbSvIyM
- https://groups.google.com/forum/#%21topic/rabbitmq-users/DMkypbSvIyM
- http://seclists.org/oss-sec/2015/q1/30
- http://www.rabbitmq.com/release-notes/README-3.4.0.txt
EPSS
Процентиль: 60%
0.00392
Низкий
CVE ID
Связанные уязвимости
ubuntu
около 11 лет назад
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
redhat
больше 11 лет назад
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
nvd
около 11 лет назад
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
debian
около 11 лет назад
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_u ...
EPSS
Процентиль: 60%
0.00392
Низкий