Exploiting vulnerable Xstream targets (CVE-2021-39144)

Exploiting vulnerable Xstream targets (CVE-2021-39144)

CVEs

8.5 High Severity

Screenshots from the blog posts

images/clzpiwkj4ui1h1in980duhgkd.jpgimages/clzpiwkj4ui1h1in980duhgkd.jpg

Summary

In this post, we will understand the deserialization exploit for XStream leading to RCE (CVE-2021-39144). We understand the complete exploit and see how to use it to exploit vulnerable tar

Script link

This blog post was authored by Sina Kheirkhah. Sina is a past student of the Full Stack Web Attack class.VMWare NSX Manager is vulnerable to a pre-authenti…

image

Description

@secatgourity

190 posts

Total vcoins

0

Social media links

Comments (0)