CVE-2018-11775
TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vu
TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.
HIGH · CVSS 7.4
EPSS 0.00492
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0