Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-4432

Опубликовано: 01 июн. 2016
Источник: nvd
CVSS3: 9.1
CVSS2: 5
EPSS Низкий

Описание

The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:qpid_broker-j:*:*:*:*:*:*:*:*
Версия до 6.0.3 (исключая)

EPSS

Процентиль: 60%
0.0039
Низкий

9.1 Critical

CVSS3

5 Medium

CVSS2

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 9 лет назад

The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.

redhat
больше 9 лет назад

The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.

CVSS3: 9.1
debian
больше 9 лет назад

The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid J ...

CVSS3: 9.1
github
больше 7 лет назад

AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication

EPSS

Процентиль: 60%
0.0039
Низкий

9.1 Critical

CVSS3

5 Medium

CVSS2

Дефекты

CWE-287