Логотип exploitDog
bind:CVE-2020-13931
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13931

Количество 2

Количество 2

nvd логотип

CVE-2020-13931

около 5 лет назад

If Apache TomEE 8.0.0-M1 - 8.0.3, 7.1.0 - 7.1.3, 7.0.0-M1 - 7.0.8, 1.0.0 - 1.7.5 is configured to use the embedded ActiveMQ broker, and the broker config is misconfigured, a JMX port is opened on TCP port 1099, which does not include authentication. CVE-2020-11969 previously addressed the creation of the JMX management interface, however the incomplete fix did not cover this edge case.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-mp28-rq7g-qx62

почти 4 года назад

Remote code execution in Apache TomEE

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-13931

If Apache TomEE 8.0.0-M1 - 8.0.3, 7.1.0 - 7.1.3, 7.0.0-M1 - 7.0.8, 1.0.0 - 1.7.5 is configured to use the embedded ActiveMQ broker, and the broker config is misconfigured, a JMX port is opened on TCP port 1099, which does not include authentication. CVE-2020-11969 previously addressed the creation of the JMX management interface, however the incomplete fix did not cover this edge case.

CVSS3: 9.8
1%
Низкий
около 5 лет назад
github логотип
GHSA-mp28-rq7g-qx62

Remote code execution in Apache TomEE

CVSS3: 9.8
1%
Низкий
почти 4 года назад

Уязвимостей на страницу