SAP Knowledge Base Article - Preview

3299392 - Apache ActiveMQ Admin Console Accessible Using Default Credentials

Symptom

  • We have observed the below vulnerabilities Apache ActiveMQ Admin Console Accessible Using Default Credentials
  • Threat - Apache ActiveMQ is an open-source message broker written in Java together with a full Java Message Service (JMS) client. The admin interface of Apache ActiveMQ is accessible using default credentials - admin: admin. QID Detection Logic: This QID launches a request directed at the Apache ActiveMQ administration console with default credentials.
  • Impact- Successfully exploiting this issue may allow attackers to obtain administrative access to the application. 


Read more...

Environment

SAP UME by Knoa all versions

Keywords

vulnerabilities, Apache, ActiveMQ, Knoa, ports , KBA , XX-PART-KNO , Knoa Experience and Performance Manager , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.