CVE-2010-1428CISA KEVEPSS p99.1%

CVE-2010-1428Red Hat JBoss Information Disclosure Vulnerability

Red Hat / JBoss

Description

Unauthenticated access to the JBoss Application Server Web Console (/web-console) is blocked by default. However, it was found that this block was incomplete, and only blocked GET and POST HTTP verbs. A remote attacker could use this flaw to gain access to sensitive information.

Scoring

EPSS62.31% probability of exploitation · percentile 99.1% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2022-05-25

(incoming)1

TypeTargetConfidenceTier
KEVEntryRed Hat JBoss Information Disclosure Vulnerabilitykev-cve-2010-14280%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Red Hat JBoss Authentication Bypass Vulnerability
CVE
Red Hat Linux JBoss Seam 2 Remote Code Execution Vulnerability
CVE
Red Hat JBoss Application Server Remote Code Execution Vulnerability
CVE
Red Hat JBoss RichFaces Framework Expression Language Injection Vulnerability
CVE
SAP NetWeaver Remote Code Execution Vulnerability
CVE
TIBCO JasperReports Server Information Disclosure Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.