CVE-2009-4843
N/A
N/A
Summary
ToutVirtual VirtualIQ Pro before 3.5 build 8691 does not require administrative authentication for JBoss console access, which allows remote attackers to execute arbitrary commands via requests to (1) the JMX Management Console or (2) the Web Console.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://secunia.com/advisories/37297
- http://www.securityfocus.com/archive/1/507729/100/0/threaded
- http://www.securenetwork.it/ricerca/advisory/download/SN-2009-02.txt
References
- http://secunia.com/advisories/37297
- http://www.securityfocus.com/archive/1/507729/100/0/threaded
- http://www.securenetwork.it/ricerca/advisory/download/SN-2009-02.txt
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.