Unrated severityNVD Advisory· Published Aug 31, 2020· Updated Sep 16, 2024
RabbitMQ arbitrary code execution using local binary planting
CVE-2020-5419
Description
RabbitMQ versions 3.8.x prior to 3.8.7 are prone to a Windows-specific binary planting security vulnerability that allows for arbitrary code execution. An attacker with write privileges to the RabbitMQ installation directory and local access on Windows could carry out a local binary hijacking (planting) attack and execute arbitrary code.
Affected products
2- VMware Tanzu/RabbitMQv5Range: 3.7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- tanzu.vmware.com/security/cve-2020-5419mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.