Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2010-0738

Red Hat | JBossAdded 2022-05-25Remediation Deadline 2022-06-15Active Ransomware Campaign

Red Hat JBoss Authentication Bypass Vulnerability

The JMX-Console web application in JBossAs in Red Hat JBoss Enterprise Application Platform performs access control only for the GET and POST methods, which allows remote attackers to send requests to this application's GET handler by using a different method.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-264

References