Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v10.5 - Exploits Update (Tue Jun 29 2010)

JBoss Enterprise Application Platform JMX Console Authentication Bypass Remote Code Execution Exploit

Exploits/Remote Code Execution  [Linux]




• Tue Jun 29 2010
The JMX-Console web application in JBoss Enterprise Application Platform performs access control only for the GET and POST methods, which allows remote attackers to send requests to this application's GET handler by using a different method. This module will exploit this vulnerability to deploy an agent by uploading a JSP file to the target server.

Exploits Vulnerabiltiy: CVE-2010-0738



< Back to Product Updates