Apache ActiveMQ是美国阿帕奇(Apache)基金会的一套开源的消息中间件,它支持Java消息服务、集群、Spring Framework等。 ActiveMQ Artemis management API 2.7.0及之后版本(2.12.0版本已修复)中存在安全漏洞,该漏洞源于程序会将明文形式的密码存储在Artemis影子文件中(etc/artemis-users.properties文件)。本地攻击者可利用该漏洞读取Artemis影子文件的内容。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | ActiveMQ Artemis | version 2.7.0 up until 2.12.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet