An issue was discovered in these Pivotal RabbitMQ versions: all 3.4.x versions, all 3.5.x versions, and 3.6.x versions prior to 3.6.9; and these RabbitMQ for PCF versions: all 1.5.x versions, 1.6.x versions prior to 1.6.18, and 1.7.x versions prior to 1.7.15. Several forms in the RabbitMQ management UI are vulnerable to XSS attacks.
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 02 Apr 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Broadcom Broadcom rabbitmq Server | |
| CPEs | cpe:2.3:a:vmware:rabbitmq:3.4.1:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.4.2:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.4.3:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.4.4:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.5.0:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.5.1:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.5.2:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.5.3:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.5.6:*:*:*:*:*:*:* cpe:2.3:a:vmware:rabbitmq:3.6.7:*:*:*:*:*:*:* | cpe:2.3:a:broadcom:rabbitmq_server:3.4.0:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.4.1:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.4.2:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.4.3:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.4.4:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.5.0:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.5.1:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.5.2:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.5.3:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.5.6:*:*:*:*:*:*:* cpe:2.3:a:broadcom:rabbitmq_server:3.6.7:*:*:*:*:*:*:* | 
| Vendors & Products | Vmware Vmware rabbitmq | Broadcom Broadcom rabbitmq Server | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: dell
Published: 2017-06-13T06:00:00
Updated: 2024-08-05T14:47:43.349Z
Reserved: 2016-12-29T00:00:00
Link: CVE-2017-4967
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Deferred
Published: 2017-06-13T06:29:00.520
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-4967
 Redhat
                        Redhat