← KEV catalog
CISA known exploited vulnerability

CVE-2010-0738

Red Hat JBoss Authentication Bypass Vulnerability

SOURCE FACT

Red Hat · JBoss

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform performs access control only for the GET and POST methods, which allows remote attackers to send requests to this application's GET handler by using a different method.

Required action

Apply updates per vendor instructions.

CISA notes

https://nvd.nist.gov/vuln/detail/CVE-2010-0738

View source evidence →

CHECK YOUR OUTSIDE-IN INVENTORY

Could this product be present?