vulnerability

FreeBSD: VID-6aa956fb-d97f-11e6-a071-001e67f15f5a (CVE-2016-9877): RabbitMQ -- Authentication vulnerability

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Jan 15, 2017
Added
Jan 15, 2017
Modified
Dec 10, 2025

Description

Pivotal.io reports: MQTT (MQ Telemetry Transport) connection authentication with a username/password pair succeeds if an existing username is provided but the password is omitted from the connection request. Connections that use TLS with a client-provided certificate are not affected.

Solution

freebsd-upgrade-package-rabbitmq
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.