-
Notifications
You must be signed in to change notification settings - Fork 148
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
JSP base directory probably not generic #2
Comments
hello, |
after 6.7 U3g, path |
Thanks for the confirmation, oh and I just see PT finally published their full research now https://swarm.ptsecurity.com/unauth-rce-vmware/ |
after about 8 hours test, i think we can rewrite |
I found some interesting code in
|
Hello,
Thanks for the PoC, I aws looking at
Linux.tar
file that contains the directory where the webshell should be written.By testing on 6.7 unpatched servers, it's not getting JSP compilation/execution that easily (and strace/find does not give up that easily a proper webapps path).
Cheers
The text was updated successfully, but these errors were encountered: