Medium severity4.3NVD Advisory· Published Aug 23, 2022· Updated Jun 17, 2026
CVE-2021-3763
CVE-2021-3763
Description
A flaw was found in the Red Hat AMQ Broker management console in version 7.8 where an existing user is able to access some limited information even when the role the user is assigned to should not be allow access to the management console. The main impact is to confidentiality as this flaw means some role bindings are incorrectly checked, some privileged meta information such as queue names and configuration details are disclosed but the impact is limited as not all information is accessible and there is no affect to integrity.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:redhat:amq_broker:7.8.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:redhat:amq_broker:7.8.0:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:amq_broker:7.8.1:*:*:*:*:*:*:*
- cpe:2.3:a:redhat:amq_broker:7.8.2:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: <7.8
Patches
Vulnerability mechanics
References
3- access.redhat.com/security/cve/CVE-2021-3763nvdVendor Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingVendor Advisory
- issues.redhat.com/browse/ENTMQBR-5372nvdVendor Advisory
News mentions
0No linked articles in our index yet.