Description
An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x versions prior to 1.6.18, and 1.7.x versions prior to 1.7.15. Several forms in the RabbitMQ management UI are vulnerable to XSS attacks.
References
https://lists.debian.org/debian-lts-announce/2021/07/msg00011.html
https://pivotal.io/security/cve-2017-4965
https://lists.debian.org/debian-lts-announce/2021/07/msg00011.html
https://pivotal.io/security/cve-2017-4965
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
6.1 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2017-06-13T06:29:00.520Z
9 years agoLast modified
2026-06-17T01:19:39.117Z
3 months ago