What happened
The Fileserver web application in Apache ActiveMQ allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request
Affected versions
ActiveMQ: See original advisory Fixed: See vendor advisory.
Why it matters
This source correlation may provide earlier visibility while structured CVE metadata is still being updated.
Detection & mitigation
- Review the original advisory and validate affected versions.
- Apply vendor-provided updates or mitigations when available.
Public PoC references
RepositoryAuthorFirst seenReference
Exploit-DB 42283ActiveMQ < 5.14.0 - Web Shell Upload (Metasploit)Metasploit2017-06-29VerifiedExploit-DB 40857Apache ActiveMQ 5.11.1/5.13.2 - Directory Traversal / Command ExecutionDavid Jorm2015-08-17VerifiedSploitusExploit for CVE-2016-3088. CVSS 9.8.Sploitus index2026-09-15T08:27:29+00:00CandidateSource timeline
Discovered through CISA Known Exploited VulnerabilitiesView source ↗
Added to CISA Known Exploited Vulnerabilities catalogView source ↗
Added to CISA Known Exploited Vulnerabilities catalogView source ↗
Record history
Record created from the first normalized source observation.
Metadata and source references refreshed.