{ "dataType": "CVE_RECORD", "dataVersion": "5.1", "cveMetadata": { "state": "PUBLISHED", "cveId": "CVE-2015-7559", "assignerOrgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "assignerShortName": "redhat", "dateUpdated": "2024-08-06T07:51:28.509Z", "dateReserved": "2015-09-29T00:00:00.000Z", "datePublished": "2019-08-01T00:00:00.000Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "53f830b8-0a3f-465b-8143-3b8a9948e749", "shortName": "redhat", "dateUpdated": "2023-06-30T00:00:00.000Z" }, "descriptions": [ { "lang": "en", "value": "It was found that the Apache ActiveMQ client before 5.14.5 exposed a remote shutdown command in the ActiveMQConnection class. An attacker logged into a compromised broker could use this flaw to achieve denial of service on a connected client." } ], "affected": [ { "vendor": "Apache", "product": "ActiveMQ", "versions": [ { "version": "5.15.5", "status": "affected" } ] } ], "references": [ { "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-7559" }, { "url": "https://issues.apache.org/jira/browse/AMQ-6470" } ], "metrics": [ { "cvssV3_0": { "version": "3.0", "vectorString": "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L", "attackVector": "NETWORK", "attackComplexity": "LOW", "privilegesRequired": "HIGH", "userInteraction": "NONE", "scope": "UNCHANGED", "confidentialityImpact": "NONE", "integrityImpact": "NONE", "availabilityImpact": "LOW", "baseScore": 2.7, "baseSeverity": "LOW" } } ], "problemTypes": [ { "descriptions": [ { "type": "CWE", "lang": "en", "description": "CWE-306", "cweId": "CWE-306" } ] } ] }, "adp": [ { "providerMetadata": { "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-06T07:51:28.509Z" }, "title": "CVE Program Container", "references": [ { "url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-7559", "tags": [ "x_transferred" ] }, { "url": "https://issues.apache.org/jira/browse/AMQ-6470", "tags": [ "x_transferred" ] } ] } ] } }