Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

redhat логотип

CVE-2020-13932

около 6 лет назад

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-13932

около 6 лет назад

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3h2h-xqr2-2jp7

больше 4 лет назад

Cross-site Scripting (XSS) in Apache ActiveMQ Artemis

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-13932

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.5
4%
Низкий
около 6 лет назад
nvd логотип
CVE-2020-13932

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.1
4%
Низкий
около 6 лет назад
github логотип
GHSA-3h2h-xqr2-2jp7

Cross-site Scripting (XSS) in Apache ActiveMQ Artemis

CVSS3: 6.1
4%
Низкий
больше 4 лет назад

Уязвимостей на страницу