snallygaster could detect JBoss admin panels through the directories below so the user could check if they are vulnerable using tools like this one https://github.com/joaomatosf/jexboss.
/jmx-console/HtmlAdaptor?action=inspectMBean&name=jboss.system:type=ServerInfo
/web-console/Invoker
/invoker/JMXInvokerServlet
/admin-console/