RULE(RULE ID:322185)

Rule General Information
Release Date: 2019-07-01
Rule Name: Apache Axis2 Admin Account Default Password Vulnerability (CVE-2010-0219)
Severity:
CVE ID:
Rule Protection Details
Description: Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier for remote attackers to execute arbitrary code by uploading a crafted web service.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityTrackerID:1024929
ExploitDB:15869
http://www.securityfocus.com/archive/1/514284/100/0/threaded
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
http://www.sap.com/usa/index.epx