The optional ActiveMQ LDAP login module can be configured to use anonymous access to the LDAP server. In this case, for Apache ActiveMQ Artemis prior to version 2.16.0 and Apache ActiveMQ prior to versions 5.16.1 and 5.15.14, the anonymous context is used to verify a valid users password in error, resulting in no check on the password.
Metrics
Affected Vendors & Products
References
History
Mon, 15 Jun 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache artemis
|
|
| CPEs | cpe:2.3:a:apache:artemis:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apache activemq Artemis
|
Apache artemis
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-03T20:19:20.050Z
Reserved: 2021-01-25T00:00:00.000Z
Link: CVE-2021-26117
No data.
Status : Modified
Published: 2021-01-27T19:15:13.720
Modified: 2026-06-17T03:42:53.527
Link: CVE-2021-26117
OpenCVE Enrichment
No data.