Skip to content

Module: Spring Framework Malicious Jar Exploit

bcoles edited this page Jan 24, 2022 · 2 revisions

Summary

  • Objective: Execute a malicious JAR file using the Spring Framework 'class.classloader' vulnerability (CVE-2010-1622).

  • Authors: bcoles

  • Browsers: All

  • Code

For more information see: http://www.exploit-db.com/exploits/13918/

Versions Affected:
3.0.0 to 3.0.2
2.5.0 to 2.5.6.SEC01 (community releases)
2.5.0 to 2.5.7 (subscription customers)

Feedback

Clone this wiki locally