vendor:
ActiveMQ
by:
Ian Anderson, Hillary Benson
9,8
CVSS
CRITICAL
Remote Code Execution
78
CWE
Product Name: ActiveMQ
Affected Version From: 5.x before 5.14.0
Affected Version To: 5.x before 5.14.0
Patch Exists: YES
Related CWE: CVE-2016-3088
CPE: a:apache:activemq:5.x
Other Scripts:
N/A
Tags: fileupload,kev,edb,cve,cve2016,apache,activemq,intrusive
CVSS Metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Nuclei References:
https://www.exploit-db.com/exploits/40857, https://medium.com/@knownsec404team/analysis-of-apache-activemq-remote-code-execution-vulnerability-cve-2016-3088-575f80924f30, http://activemq.apache.org/security-advisories.data/CVE-2016-3088-announcement.txt, https://nvd.nist.gov/vuln/detail/CVE-2016-3088, http://rhn.redhat.com/errata/RHSA-2016-2036.html
Nuclei Metadata: {'max-request': 2, 'vendor': 'apache', 'product': 'activemq'}
Platforms Tested: Java, Linux, Windows
2016
ActiveMQ web shell upload
Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request via the Fileserver web application.
Mitigation:
Upgrade to Apache ActiveMQ 5.14.0 or later