An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console on the queue.jsp page of Apache ActiveMQ versions 5.0.0 to 5.15.5. The root cause of this issue is improper data filtering of the QueueFilter parameter.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-hvwm-2624-rp9x | Apache ActiveMQ web console vulnerable to Cross-site Scripting |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-09-16T18:24:11.216Z
Reserved: 2018-03-09T00:00:00
Link: CVE-2018-8006
No data.
Status : Modified
Published: 2018-10-10T14:29:00.497
Modified: 2024-11-21T04:13:04.640
Link: CVE-2018-8006
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA