vulnerability

Apache ActiveMQ: CVE-2016-3088: Unrestricted Upload of File with Dangerous Type

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Jun 1, 2016
Added
Jan 9, 2024
Modified
Feb 24, 2026

Description

The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.

Solution

apache-activemq-upgrade-latest

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.