GHSA-q66c-h853-gqw2
CRITICALCVE-2016-4432The AMQP 0-8, 0-9, 0-91, and 0-10 connection handling in Apache Qpid Java before 6.0.3 might allow remote attackers to bypass authentication and consequently perform actions via vectors related to connection state logging.
- Affected
- < 6.0.3
- Fixed in
- 6.0.3
- Weakness
- CWE-287
- Published
- 2018-10-16
- Source
- github