PT-2018-5047 · Red Hat · Red Hat A-Mq 6+1

Jason Shepherd

·

Publicado

2018-08-01

·

Atualizado

2023-02-12

·

CVE-2016-8653

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Red Hat JBoss Fuse 6 Red Hat A-MQ 6
Description A flaw was discovered in the JMX endpoint, allowing it to deserialize credentials passed to it. This could be exploited by an attacker to launch a denial of service attack.
Recommendations For Red Hat JBoss Fuse 6, consider disabling the JMX endpoint until a fix is available. For Red Hat A-MQ 6, restrict access to the JMX endpoint to minimize the risk of exploitation.

Correção

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-8653

Produtos afetados

Red Hat A-Mq 6
Red Hat Jboss Fuse 6