VDB
DEBIAN-CVE-2018-11775
DEBIAN-CVE-2018-11775
PUBLISHED
CVSS 7.400000095367432 HIGH
TLS hostname verification when using the Apache ActiveMQ Client before 5.15.6 was missing which could make the client vulnerable to a MITM attack between a Java application using the ActiveMQ client and the ActiveMQ server. This is now enabled by default.
Risk Scores
CVSS 3.0
7.400000095367432
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian:11 | activemq | 0, 0, 0 |
| Debian:12 | activemq | 0, 0, 0 |
| Debian:13 | activemq | 0, 0, 0 |
Timeline
- Sep 10, 2018 CVE Published
- Apr 28, 2026 CVE Updated