Логотип exploitDog
bind:CVE-2020-13932
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-13932

Количество 3

Количество 3

redhat логотип

CVE-2020-13932

больше 5 лет назад

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-13932

больше 5 лет назад

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3h2h-xqr2-2jp7

почти 4 года назад

Cross-site Scripting (XSS) in Apache ActiveMQ Artemis

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-13932

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.5
3%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-13932

In Apache ActiveMQ Artemis 2.5.0 to 2.13.0, a specially crafted MQTT packet which has an XSS payload as client-id or topic name can exploit this vulnerability. The XSS payload is being injected into the admin console's browser. The XSS payload is triggered in the diagram plugin; queue node and the info section.

CVSS3: 6.1
3%
Низкий
больше 5 лет назад
github логотип
GHSA-3h2h-xqr2-2jp7

Cross-site Scripting (XSS) in Apache ActiveMQ Artemis

CVSS3: 6.1
3%
Низкий
почти 4 года назад

Уязвимостей на страницу