The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.
References
Configurations
History
No history.
Information
Published : 2016-06-01 20:59
Updated : 2025-04-12 10:46
NVD link : CVE-2016-4432
Mitre link : CVE-2016-4432
CVE.ORG link : CVE-2016-4432
JSON object : View
Products Affected
apache
- qpid_broker-j
CWE
CWE-287
Improper Authentication