Lucene search

K
githubexploitB3D589FF-09FF-516B-B72C-C71EE8EED345
HistoryNov 08, 2023 - 7:48 a.m.

Exploit for Deserialization of Untrusted Data in Apache Activemq

2023-11-0807:48:00
324
apache activemq
deserialization
untrusted data
python
openwire protocol
throwable class
cve vulnerability
rce analysis

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:H

9.7 High

AI Score

Confidence

High

0.964 High

EPSS

Percentile

99.6%

项目参考

本项目是参考 https://github.com/X1r0z/ActiveMQ-RCE 项目的 exp 来…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

10 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:H/A:H

9.7 High

AI Score

Confidence

High

0.964 High

EPSS

Percentile

99.6%