CVE-2016-6810

MEDIUM6.1EPSS 2.9%

Improper Neutralization of Input During Web Page Generation Apache ActiveMQ

發布日:2022/5/14修改日:2026/4/28

描述

In Apache ActiveMQ 5.x before 5.14.2, an instance of a cross-site scripting vulnerability was identified to be present in the web based administration console. The root cause of this issue is improper user data output validation.

受影響套件(2)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1MEDIUM6.1CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

參考連結(10)