Back to Database
Status published
Medium
CVE-2014-9494
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users...
Vulnerability Description
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-9494
Credits & Attribution
No credits recorded in the NVD database.
References
More from pivotal software
View All →CVE-2018-1231
Cloud Foundry BOSH CLI, versions prior to v3.0.1, contains an...
High
8.8
CVE-2016-6653
The MariaDB audit_plugin component in Pivotal Cloud Foundry (PCF) cf-mysql-release...
High
7.5
CVE-2016-6652
SQL injection vulnerability in Pivotal Spring Data JPA before 1.9.6...
Medium
5.6
CVE-2016-5016
Pivotal Cloud Foundry 239 and earlier, UAA (aka User Account...
Medium
5.9
CVE-2016-5006
The Cloud Controller in Cloud Foundry before 239 logs user-provided...
Critical
9.8
Affected Vendor
pivotal software
View all reports →Affected Software
rabbitmq
Vulnerable Versions:
0
Timeline
Official Publish:
January 20th, 2015
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.