CISA/NIST NVD Alert - CVE-2010-0738
JBoss - Red Hat JBoss Authentication Bypass Vulnerability
CISA/NIST Known Exploited Vulnerability Alert
CVE Identification Number
CVE-2010-0738
Vendor Name
Red Hat
Product
JBoss
Vulnerability Name
Red Hat JBoss Authentication Bypass Vulnerability
Description of Vulnerability
The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform performs access control only for the GET and POST methods, which allows remote attackers to send requests to this application's GET handler by using a different method.
Date Added to CISA Known Exploited Vulnerability Database
2022-05-25
Remediation
Apply updates per vendor instructions.