Language:
https://www.securityfocus.com/archive/1/514284/30/0/threaded
Severity: Critical
ID: 46740
File Name: apache_axis2_default_creds.nasl
Version: 1.31
Type: remote
Family: CGI abuses
Published: 5/27/2010
Updated: 6/5/2024
Configuration: Enable thorough checks
Supported Sensors: Nessus
Enable CGI Scanning: true
Risk Factor: High
Score: 7.4
Risk Factor: Critical
Base Score: 10
Temporal Score: 9.5
Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2010-0219
CPE: cpe:/a:apache:axis2
Required KB Items: installed_sw/Axis2
Excluded KB Items: Settings/disable_cgi_scanning, global_settings/supplied_logins_only
Exploit Available: true
Exploit Ease: Exploits are available
Core Impact
Metasploit (Axis2 / SAP BusinessObjects Authenticated Code Execution (via SOAP))
CVE: CVE-2010-0219
CERT: 989719