CVE-2020-5419
- EPSS 0.07%
- Veröffentlicht 31.08.2020 15:15:11
- Zuletzt bearbeitet 02.04.2025 14:13:43
RabbitMQ versions 3.8.x prior to 3.8.7 are prone to a Windows-specific binary planting security vulnerability that allows for arbitrary code execution. An attacker with write privileges to the RabbitMQ installation directory and local access on Windo...
CVE-2019-11287
- EPSS 0.79%
- Veröffentlicht 23.11.2019 00:15:10
- Zuletzt bearbeitet 02.04.2025 14:13:43
Pivotal RabbitMQ, versions 3.7.x prior to 3.7.21 and 3.8.x prior to 3.8.1, and RabbitMQ for Pivotal Platform, 1.16.x versions prior to 1.16.7 and 1.17.x versions prior to 1.17.4, contain a web management plugin that is vulnerable to a denial of servi...
CVE-2019-11281
- EPSS 1.02%
- Veröffentlicht 16.10.2019 16:15:10
- Zuletzt bearbeitet 21.11.2024 04:20:50
Pivotal RabbitMQ, versions prior to v3.7.18, and RabbitMQ for PCF, versions 1.15.x prior to 1.15.13, versions 1.16.x prior to 1.16.6, and versions 1.17.x prior to 1.17.3, contain two components, the virtual host limits page, and the federation manage...
CVE-2018-1279
- EPSS 0.32%
- Veröffentlicht 10.12.2018 19:29:25
- Zuletzt bearbeitet 21.11.2024 03:59:31
Pivotal RabbitMQ for PCF, all versions, uses a deterministically generated cookie that is shared between all machines when configured in a multi-tenant cluster. A remote attacker who can gain information about the network topology can guess this cook...
CVE-2017-4965
- EPSS 0.83%
- Veröffentlicht 13.06.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x versions prior to 1.6.18, and 1.7.x versions prior t...
CVE-2017-4966
- EPSS 0.09%
- Veröffentlicht 13.06.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x versions prior to 1.6.18, and 1.7.x versions prior t...
CVE-2017-4967
- EPSS 0.6%
- Veröffentlicht 13.06.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x versions prior to 1.6.18, and 1.7.x versions prior t...
CVE-2016-9877
- EPSS 0.33%
- Veröffentlicht 29.12.2016 09:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
An issue was discovered in Pivotal RabbitMQ 3.x before 3.5.8 and 3.6.x before 3.6.6 and RabbitMQ for PCF 1.5.x before 1.5.20, 1.6.x before 1.6.12, and 1.7.x before 1.7.7. MQTT (MQ Telemetry Transport) connection authentication with a username/passwor...
CVE-2015-8786
- EPSS 0.88%
- Veröffentlicht 09.12.2016 20:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Management plugin in RabbitMQ before 3.6.1 allows remote authenticated users with certain privileges to cause a denial of service (resource consumption) via the (1) lengths_age or (2) lengths_incr parameter.
CVE-2016-0929
- EPSS 0.31%
- Veröffentlicht 18.09.2016 02:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The metrics-collection component in RabbitMQ for Pivotal Cloud Foundry (PCF) 1.6.x before 1.6.4 logs command lines of failed commands, which might allow context-dependent attackers to obtain sensitive information by reading the log data, as demonstra...