VYPR
Moderate severityNVD Advisory· Published Apr 21, 2013· Updated Jun 16, 2026

CVE-2012-6551

CVE-2012-6551

Description

The default configuration of Apache ActiveMQ before 5.8.0 enables a sample web application, which allows remote attackers to cause a denial of service (broker resource consumption) via HTTP requests.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
org.apache.activemq:apache-activemqMaven
< 5.8.05.8.0
org.apache.activemq:activemq-web-demoMaven
< 5.8.05.8.0

Affected products

22
  • Apache/Activemq20 versions
    cpe:2.3:a:apache:activemq:*:*:*:*:*:*:*:*+ 19 more
    • cpe:2.3:a:apache:activemq:*:*:*:*:*:*:*:*range: <=5.7.0
    • cpe:2.3:a:apache:activemq:4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.0.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.0.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.0:m4:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.0:rc2:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:4.1.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.0.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.4.2:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.5.0:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:apache:activemq:5.6.0:*:*:*:*:*:*:*
  • ghsa-coords2 versions
    < 5.8.0+ 1 more
    • (no CPE)range: < 5.8.0
    • (no CPE)range: < 5.8.0

Patches

Vulnerability mechanics

References

15

News mentions

0

No linked articles in our index yet.