Eclipse

Openmq

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.62%
  • Veröffentlicht 05.03.2026 16:27:30
  • Zuletzt bearbeitet 05.08.2026 08:16:32

An unsafe parsing of OpenMQ's configuration in OpenMQ versions <6.5.2 and <6.9.0, allows a remote attacker to read arbitrary files from a MQ Broker's server. A full exploitation could read unauthorized files of the OpenMQ’s host OS. In some scenarios...

  • EPSS 0.4%
  • Veröffentlicht 03.03.2026 09:18:46
  • Zuletzt bearbeitet 09.04.2026 19:47:40

OpenMQ exposes a TCP-based management service (imqbrokerd) that by default requires authentication. However, the product ships with a default administrative account (admin/ admin) and does not enforce a mandatory password change on first use. After t...