Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-11775

Опубликовано: 10 сент. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8
CVSS3: 7.4

Описание

TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.

РелизСтатусПримечание
bionic

not-affected

5.15.8-2~18.04
cosmic

not-affected

5.15.8-2~18.04
devel

not-affected

5.15.8-2
disco

not-affected

5.15.8-2
eoan

not-affected

5.15.8-2
esm-apps/bionic

not-affected

5.15.8-2~18.04
esm-apps/focal

not-affected

5.15.8-2
esm-apps/jammy

not-affected

5.15.8-2
esm-apps/noble

not-affected

5.15.8-2
esm-apps/xenial

released

5.13.2+dfsg-2ubuntu0.1~esm1

Показывать по

EPSS

Процентиль: 65%
0.00492
Низкий

5.8 Medium

CVSS2

7.4 High

CVSS3

Связанные уязвимости

CVSS3: 6.8
redhat
больше 7 лет назад

TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.

CVSS3: 7.4
nvd
больше 7 лет назад

TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.

CVSS3: 7.4
debian
больше 7 лет назад

TLS hostname verification when using the Apache ActiveMQ Client before ...

CVSS3: 7.4
github
больше 7 лет назад

Improper Certificate Validation in Apache activemq-client

CVSS3: 7.4
fstec
больше 7 лет назад

Уязвимость программной платформы Apache ActiveMQ, связанная с ошибками в настройках безопасности, позволяющая нарушителю реализовать атаку типа «человек посередине»

EPSS

Процентиль: 65%
0.00492
Низкий

5.8 Medium

CVSS2

7.4 High

CVSS3