CVE-2016-3088

CRITICAL9.8⚠ KEVEPSS 94.3%

Improper Input Validation in Apache ActiveMQ

發布日:2022/5/14修改日:2026/4/28加入 CISA KEV 日:2022/2/10

描述

The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1CRITICAL9.8CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:H

參考連結(18)