Apache ActiveMQ Fileserver Remote Code Execution Vulnerability (CVE-2016-3088)

Detailed Description
Apache ActiveMQ is a message transfer and integration mode provider.
There is Apache ActiveMQ Fileserver web program multiple security vulnerabilities, remote attackers can replace Web applications with malicious code, remote code execution on an affected system.
<* Source: Simon Zuckerbraun
  *>
Solution
Manufacturers patch:
Apache Group
------------
Current vendors have released an updated patch to fix the security issue, please go to the manufacturer's home page to download:
http://activemq.apache.org/security-advisories.data/CVE-2016-3088-announcement.txt
Follow the link in the restoration program to repair, delete conf \ jetty.xml those lines in, finished restart activemq.

Guess you like

Origin www.cnblogs.com/mrhonest/p/10980256.html