CVE Database
/

CVE-2012-4446

Back to search

CVE-2012-4446

Published: Mar 12, 2013

Modified: Sep 16, 2024

PUBLISHED

Description

The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP connections without checking the source user ID, which allows remote attackers to bypass authentication and have other unspecified impact via an AMQP request.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2013:0561
vendor-advisory
x_refsource_REDHAT
RHSA-2013:0562
vendor-advisory
x_refsource_REDHAT
52516
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now