CVE Database
/

CVE-2018-11775

Back to search

CVE-2018-11775

Published: Sep 10, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.

VendorProductVersions

Apache Software Foundation

Apache ActiveMQ

affected
5.0.0 - 5.15.5

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now