CVE-2016-9299 代碼執行漏洞

From PwnWiki
Revision as of 17:38, 12 June 2021 by Atsud0 (talk | contribs) (Created page with "==簡介== 2.32之前嘅Jenkins同2.19.3之前嘅LTS中嘅遠程處理模塊允許遠程攻擊者通過精心製作嘅序列化Java對象執行任意代碼,從而觸發對...")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Other languages:

簡介

2.32之前嘅Jenkins同2.19.3之前嘅LTS中嘅遠程處理模塊允許遠程攻擊者通過精心製作嘅序列化Java對象執行任意代碼,從而觸發對第三方服務器嘅LDAP查詢。

MSF

exploit/linux/misc/jenkins_ldap_deserialize