Home / os / win10

Apache OFBiz SOAP Java Deserialization

Posted on 06 April 2021

This Metasploit module exploits a Java deserialization vulnerability in Apache OFBiz's unauthenticated SOAP endpoint /webtools/control/SOAPService for versions prior to 17.12.06.

 

TOP