Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-1428
Description:The Web Console (aka web-console) in JBossAs in Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 performs access control only for the GET and POST methods, which allows remote attackers to obtain sensitive information via an unspecified request that uses a different method.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-1428
1023917
http://securitytracker.com/id?1023917
39563
http://secunia.com/advisories/39563
39710
http://www.securityfocus.com/bid/39710
ADV-2010-0992
http://www.vupen.com/english/advisories/2010/0992
HPSBMU02736
http://marc.info/?l=bugtraq&m=132698550418872&w=2
RHSA-2010:0376
https://rhn.redhat.com/errata/RHSA-2010-0376.html
RHSA-2010:0377
https://rhn.redhat.com/errata/RHSA-2010-0377.html
RHSA-2010:0378
https://rhn.redhat.com/errata/RHSA-2010-0378.html
RHSA-2010:0379
https://rhn.redhat.com/errata/RHSA-2010-0379.html
SSRT100699
http://marc.info/?l=bugtraq&m=132698550418872&w=2
https://bugzilla.redhat.com/show_bug.cgi?id=585899
https://bugzilla.redhat.com/show_bug.cgi?id=585899
jboss-webconsole-information-disclosure(58148)
https://exchange.xforce.ibmcloud.com/vulnerabilities/58148




© 1998-2025 E-Soft Inc. All rights reserved.