Vulnerable Systems:
*Red Hat, Inc. JBoss Enterprise Application Platform 5.1.9
* Red Hat, Inc. JBoss Enterprise Web Platform 5.1.9
JBoss Enterprise Application Platform and JBoss Enterprise Web Platform contain a flaw in the JMX invoker. The issue is due to the invoker failing to restrict access to users with specific roles. This may allow a remote attacker with valid JMX invoker credentials to perform arbitrary JMX operations.