Sploitus

CVE-2016-3088

19 known exploits for CVE-2016-3088

The Fileserver web application in Apache ActiveMQ 5.x before 5.14.0 allows remote attackers to upload and execute arbitrary files via an HTTP PUT followed by an HTTP MOVE request.

Affected products
Apache Activemq
Apache Activemq
< 5.14.0
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
98.5% (100th percentile)
Weakness
CWE-434
NVD status
Analyzed
Published
2016-06-01
CVE-2016-3088 at NVD
Authoritative description, scoring and affected products

19 known exploits for CVE-2016-3088

Proof-of-concept code and exploit modules indexed by Sploitus

Exploit for CVE-2015-1427
2025-12-17 laugiovGITHUB
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2025-09-14 mirrors_ym2011GITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2021-10-22 屏息这一刻GITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2021-07-03 cl4ym0reGITHUB
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2021-03-11 cyberaguiarGITHUB
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2020-12-04 王生-源GITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2020-08-27 baozhazhiziGITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2020-07-27 P4sschenGITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2020-06-12 暗杰GITEE
Exploit for Improper Input Validation in Apple Mac_Os_X
2019-11-18 edogawapGITEE
Exploit for Unrestricted Upload of File with Dangerous Type in Apache Activemq
2019-09-19 yeqingchen1GITEE
Apache ActiveMQ Fileserver remote code execution vulnerability(CVE-2016-3088)
2017-07-04 RootSEEBUGRuby
Apache ActiveMQ < 5.14.0 - Web Shell Upload Exploit
2017-06-30 Hillary BensonZDTRuby
ActiveMQ < 5.14.0 - Web Shell Upload (Metasploit)
2017-06-29 MetasploitEXPLOITDBRuby
Apache ActiveMQ 5.x Web Shell Upload
2017-06-29 Hillary BensonPACKETSTORMRuby
ActiveMQ web shell upload
2017-06-06 Ian Anderson <andrsn84@gmail.com>, Hillary Benson <1n7r1gu3@gmail.com>METASPLOITRuby
Apache ActiveMQ 5.11.1/5.13.2 - Directory Traversal / Command Execution Vulnerabilities
2016-12-03 David JormZDT
Apache ActiveMQ 5.11.1 / 5.13.2 Directory Traversal / Command Execution
2016-12-03 David JormPACKETSTORM
Apache ActiveMQ 5.11.1/5.13.2 - Directory Traversal / Command Execution
2015-08-17 David JormEXPLOITDB