CVE-2013-3060

Apache ActiveMQ <5.8.0 - Info Disclosure/DoS

Title source: llm

Description

The web console in Apache ActiveMQ before 5.8.0 does not require authentication, which allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests.

Scores

EPSS 0.0102
EPSS Percentile 77.0%

Classification

CWE
CWE-287
Status draft

Affected Products (21)

apache/activemq < 5.7.0
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
apache/activemq
... and 6 more

Timeline

Published Apr 21, 2013
Tracked Since Feb 18, 2026