VYPR
High severity8.2NVD Advisory· Published Dec 19, 2019· Updated Jun 17, 2026

CVE-2019-19340

CVE-2019-19340

Description

A flaw was found in Ansible Tower, versions 3.6.x before 3.6.2 and 3.5.x before 3.5.3, where enabling RabbitMQ manager by setting it with '-e rabbitmq_enable_manager=true' exposes the RabbitMQ management interface publicly, as expected. If the default admin user is still active, an attacker could guess the password and gain access to the system.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2
  • Ansible/Towerllm-fuzzy
    Range: <3.6.2, <3.5.3
  • Red Hat/Towerv5
    Range: ansible_tower versions 3.6.x before 3.6.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.