CVE-2010-1429

NUCLEI

Red Hat JBoss EAP <4.2.0.CP09 and <4.3.0.CP08 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2010-1429. PoCs published by Tyler Krpata, Zach Grace <@ztgrace>, including Metasploit module auxiliary/scanner/http/jboss_status. A Nuclei detection template is also available.

AI-analyzed exploit summary This Metasploit module queries the JBoss status servlet to collect sensitive information such as URL paths, GET parameters, and client IP addresses. It does not exploit the vulnerability but scans for exposed information.

Description

Red Hat JBoss Enterprise Application Platform (aka JBoss EAP or JBEAP) 4.2 before 4.2.0.CP09 and 4.3 before 4.3.0.CP08 allows remote attackers to obtain sensitive information about "deployed web contexts" via a request to the status servlet, as demonstrated by a full=true query string. NOTE: this issue exists because of a CVE-2008-3273 regression.

Exploits (2)

metasploit SCANNER
rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/jboss_status.rb

This Metasploit module queries the JBoss status servlet to collect sensitive information such as URL paths, GET parameters, and client IP addresses. It does not exploit the vulnerability but scans for exposed information.

Classification
Scanner 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: JBoss Application Server (4.0, 4.2.2, 4.2.3)
No auth needed
Prerequisites: Access to the JBoss status servlet endpoint
devstral-2 · analyzed Jun 05, 2026 Full analysis →
metasploit SCANNER
by Tyler Krpata, Zach Grace <@ztgrace> · rubypoc
https://github.com/rapid7/metasploit-framework/blob/master/modules/auxiliary/scanner/http/jboss_vulnscan.rb

This Metasploit module scans JBoss instances for multiple vulnerabilities, including unauthenticated access to sensitive endpoints, authentication bypass via HTTP verb tampering, and default credential checks. It does not exploit vulnerabilities but identifies potential misconfigurations and weaknesses.

Classification
Scanner 100%
Attack Type
Info Leak | Auth Bypass
Complexity
Moderate
Reliability
Reliable
Target: JBoss Application Server (multiple versions)
No auth needed
Prerequisites: Network access to the JBoss instance · Open HTTP/HTTPS ports
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Nuclei Templates (1)

Red Hat JBoss Enterprise Application Platform - Sensitive Information Disclosure
MEDIUMVERIFIEDby R12W4N
Shodan: title:"JBoss" || cpe:"cpe:2.3:a:redhat:jboss_enterprise_application_platform" || http.title:"jboss"
FOFA: title="jboss"

References (12)

Core 12
Core References
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2010-0379.html
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2010-0378.html
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=132698550418872&w=2
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2010-0376.html
Vendor Advisory vendor-advisory x_refsource_redhat
https://rhn.redhat.com/errata/RHSA-2010-0377.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/58149
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/0992
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/44009/
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/39710
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/39563
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1023918
Issue Tracking x_refsource_confirm
https://bugzilla.redhat.com/show_bug.cgi?id=585900

Scores

EPSS 0.5373
EPSS Percentile 98.9%

Details

CWE
CWE-264
Status published
Products (6)
redhat/jboss_enterprise_application_platform 4.2
redhat/jboss_enterprise_application_platform 4.2.0 cp01 (7 CPE variants)
redhat/jboss_enterprise_application_platform 4.3
redhat/jboss_enterprise_application_platform 4.3.0 cp01 (6 CPE variants)
redhat/jboss_enterprise_application_platform < 4.2.0
redhat/jboss_enterprise_application_platform < 4.3.0
Published Apr 28, 2010
Tracked Since Feb 18, 2026