JBOSS Pentesting
Enumeration
msfconsole
msf > use auxiliary/scanner/http/jboss_vulnscanCommon Directories
/admin-console/
/invoker/JMXInvokerServlet
/jbossws/
/jmx-console/
/jmx-console/HtmlAdaptor
/management
/manager
/status?full=true
/web-console/
/web-console/Invoker
/web-console/ServerInfo.jspDefault Credentials
Exploitation
Last updated