S4E just found a high-severity finding from ssl sweet32 vulnerability checker
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Dec 16, 2023

Jolokia Version Disclosure Vulnerability Scanner

Jolokia contains an unauthenticated version disclosure vulnerability.

Est. Time~5 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.2k
Times Used
continuous scan runs
4.6k
Continuously Checked
assets under CS
3
Vulnerabilities Found
confirmed findings
References
Detail

Jolokia is an agent based approach for remote JMX access. It is an alternative to standard JSR 160 connectors. The communication between client and agent goes over HTTP (either GET or POST), where the request and response payload is represented in JSON. An attacker may identify a version disclosure in the target Jolokia web server's HTTP response.


An attacker might use the disclosed information to harvest specific security vulnerabilities for the version identified.

Solution Advice

Restrict access to the /jolokia path on the web server where Jolokia is deployed.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.