RULE(RULE ID:711209)

Rule General Information
Release Date: 2017-07-19
Rule Name: Apache Activemq Fileserver File Upload Directory Traversal Vulnerability -1 (CVE-2016-3088)
Severity:
CVE ID:
Rule Protection Details
Description: The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.
Impact: An attacker can abtain sensitive information of the target victim, and do malicious actions to gain profits using the information.
Affected OS: Windows, Linux
Reference: ExploitDB:42283
SecurityTrackerID:1035951
SecurityTrackerID:1035951
ZeroDayInitiative:ZDI-16-356
http://rhn.redhat.com/errata/RHSA-2016-2036.html
Solutions
More advisories have been published on the website, please visit for more suggestions:
http://activemq.apache.org/security-advisories.data/CVE-2016-3088-announcement.txt