CVE-2021-32718
published 2021-06-28CVE-2021-32718: RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via management UI could lead to the user's…
PriorityP428medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
EPSS
1.44%
70.1th percentile
RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via management UI could lead to the user's bane being rendered in a confirmation message without proper `` tag sanitization, potentially allowing for JavaScript code execution in the context of the page. In order for this to occur, the user must be signed in and have elevated permissions (other user management). The vulnerability is patched in RabbitMQ 3.8.17. As a workaround, disable `rabbitmq_management` plugin and use CLI tools for management operations and Prometheus and Grafana for metrics and monitoring.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | rabbitmq-server | < rabbitmq-server 3.9.4-1 (bookworm) | rabbitmq-server 3.9.4-1 (bookworm) |
| rabbitmq | rabbitmq-server | < 3.8.17 | 3.8.17 |
| rabbitmq | rabbitmq-server | >= 0 < 3.9.4-1 | 3.9.4-1 |
| rabbitmq | rabbitmq-server | >= 0 < 3.9.4-1 | 3.9.4-1 |
| rabbitmq | rabbitmq-server | >= 0 < 3.9.4-1 | 3.9.4-1 |
| rabbitmq | rabbitmq-server | >= 0 < 3.8.3-0ubuntu0.2 | 3.8.3-0ubuntu0.2 |
| vmware | rabbitmq | < 3.8.17 | 3.8.17 |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:N/I:P/A:N
osv5.4MEDIUM
vendor_debian3.1LOW
vendor_redhat3.1LOW
vendor_ubuntu3.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
RabbitMQ Server vulnerabilities
vendor_ubuntu·2024-12-09·CVSS 3.1
CVE-2021-32719 [LOW] RabbitMQ Server vulnerabilities
Title: RabbitMQ Server vulnerabilities
Summary: RabbitMQ Server could be made to expose sensitive information over the
network.
Christian Rellmann discovered that RabbitMQ Server did not properly
sanitize user input when adding a new user via the management UI. An
attacker could possibly use this issue to perform cross site scripting and
obtain sensitive information. (CVE-2021-32718)
Fahimhusain Raydurg discovered that RabbitMQ Server did not properly
sanitize user input when using the federation management plugin. An
attacker could possibly use this issue to perform cross site scripting and
obtain sensitive information. (CVE-2021-32719)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
rabbitmq-server: improper neutralization of script-related HTML tags in a web page (basic XSS) in management UI
vendor_redhat·2021-05-06·CVSS 3.1
CVE-2021-32718 [LOW] CWE-79 rabbitmq-server: improper neutralization of script-related HTML tags in a web page (basic XSS) in management UI
rabbitmq-server: improper neutralization of script-related HTML tags in a web page (basic XSS) in management UI
RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via management UI could lead to the user's bane being rendered in a confirmation message without proper `` tag sanitization, potentially allowing for JavaScript code execution in the context of the page. In order for this to occur, the user must be signed in and have elevated permissions (other user management). The vulnerability is patched in RabbitMQ 3.8.17. As a workaround, disable `rabbitmq_management` plugin and use CLI tools for management operations and Prometheus and Grafana for metrics and monitoring.
Statement: Red Hat OpenStack Platform ships a vulnerable
Debian
CVE-2021-32718: rabbitmq-server - RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to versi...
vendor_debian·2021·CVSS 3.1
CVE-2021-32718 [LOW] CVE-2021-32718: rabbitmq-server - RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to versi...
RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via management UI could lead to the user's bane being rendered in a confirmation message without proper `` tag sanitization, potentially allowing for JavaScript code execution in the context of the page. In order for this to occur, the user must be signed in and have elevated permissions (other user management). The vulnerability is patched in RabbitMQ 3.8.17. As a workaround, disable `rabbitmq_management` plugin and use CLI tools for management operations and Prometheus and Grafana for metrics and monitoring.
Scope: local
bookworm: resolved (fixed in 3.9.4-1)
bullseye: open
forky: resolved (fixed in 3.9.4-1)
sid: resolved (fixed in 3.9.4-1)
trixie: resolved (fixed in 3.9.4-1)
OSV
rabbitmq-server vulnerabilities
osv·2024-12-09·CVSS 5.4
CVE-2021-32718 [MEDIUM] rabbitmq-server vulnerabilities
rabbitmq-server vulnerabilities
Christian Rellmann discovered that RabbitMQ Server did not properly
sanitize user input when adding a new user via the management UI. An
attacker could possibly use this issue to perform cross site scripting and
obtain sensitive information. (CVE-2021-32718)
Fahimhusain Raydurg discovered that RabbitMQ Server did not properly
sanitize user input when using the federation management plugin. An
attacker could possibly use this issue to perform cross site scripting and
obtain sensitive information. (CVE-2021-32719)
OSV
CVE-2021-32718: RabbitMQ is a multi-protocol messaging broker
osv·2021-06-28·CVSS 5.4
CVE-2021-32718 [MEDIUM] CVE-2021-32718: RabbitMQ is a multi-protocol messaging broker
RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via management UI could lead to the user's bane being rendered in a confirmation message without proper `` tag sanitization, potentially allowing for JavaScript code execution in the context of the page. In order for this to occur, the user must be signed in and have elevated permissions (other user management). The vulnerability is patched in RabbitMQ 3.8.17. As a workaround, disable `rabbitmq_management` plugin and use CLI tools for management operations and Prometheus and Grafana for metrics and monitoring.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2021/Dec/3https://github.com/rabbitmq/rabbitmq-server/pull/3028https://github.com/rabbitmq/rabbitmq-server/security/advisories/GHSA-c3hj-rg5h-2772http://seclists.org/fulldisclosure/2021/Dec/3https://github.com/rabbitmq/rabbitmq-server/pull/3028https://github.com/rabbitmq/rabbitmq-server/security/advisories/GHSA-c3hj-rg5h-2772
2021-06-28
Published