<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0">
<channel>
<title><![CDATA[Heck's  Blog]]></title> 
<link>https://www.heckjj.com/index.php</link> 
<description><![CDATA[一瞬间的决定，往往可以改变很多，事实上，让自己成功的往往不是知识，是精神！ 如果你总是为自己找借口，那只好让成功推迟。执行力，今天！]]></description> 
<language>zh-cn</language> 
<copyright><![CDATA[Heck's  Blog]]></copyright>
<item>
<link>https://www.heckjj.com/jboss-server-bug-html/</link>
<title><![CDATA[jboss远程执行代码漏洞]]></title> 
<author>Heck &lt;@hecks.tk&gt;</author>
<category><![CDATA[黑客攻防]]></category>
<pubDate>Wed, 01 Sep 2010 15:06:19 +0000</pubDate> 
<guid>https://www.heckjj.com/jboss-server-bug-html/</guid> 
<description>
<![CDATA[ 
	&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<span style="font-family: 微软雅黑;">在JBOSS默认配置下会有一个后台漏洞，漏洞发生在jboss.deployment命名空间中的addURL()函数,该函数可以远程下载一个war压缩包并解压访问http://www.safe3.com.cn:8080/jmx-console/ 后台，如下图<br/><a href="https://www.heckjj.com/attachment.php?fid=28" target="_blank"><img src="https://www.heckjj.com/attachment.php?fid=28" class="insertimage" alt="点击在新窗口中浏览此图片" title="点击在新窗口中浏览此图片" border="0"/></a></span><span style="font-family: 微软雅黑;"><br/>下拉找到如下图所示<br/><a href="https://www.heckjj.com/attachment.php?fid=29" target="_blank"><img src="https://www.heckjj.com/attachment.php?fid=29" class="insertimage" alt="点击在新窗口中浏览此图片" title="点击在新窗口中浏览此图片" border="0"/></a><br/>点击flavor=URL,type=DeploymentScanner进入<br/><a href="https://www.heckjj.com/attachment.php?fid=31" target="_blank"><img src="https://www.heckjj.com/attachment.php?fid=31" class="insertimage" alt="点击在新窗口中浏览此图片" title="点击在新窗口中浏览此图片" border="0"/></a><br/>在输入框中写入war压缩文件webshell的url地址，如上图<br/>点击invoke执行界面获得一个jsp的webshell，如下图</span><br/><a href="https://www.heckjj.com/attachment.php?fid=30" target="_blank"><img src="https://www.heckjj.com/attachment.php?fid=30" class="insertimage" alt="点击在新窗口中浏览此图片" title="点击在新窗口中浏览此图片" border="0"/></a><br/>Tags - <a href="https://www.heckjj.com/tags/jboss/" rel="tag">jboss</a> , <a href="https://www.heckjj.com/tags/%25E6%25BC%258F%25E6%25B4%259E/" rel="tag">漏洞</a> , <a href="https://www.heckjj.com/tags/bug/" rel="tag">bug</a>
]]>
</description>
</item><item>
<link>https://www.heckjj.com/jboss-server-bug-html/#blogcomment</link>
<title><![CDATA[[评论] jboss远程执行代码漏洞]]></title> 
<author> &lt;user@domain.com&gt;</author>
<category><![CDATA[评论]]></category>
<pubDate>Thu, 01 Jan 1970 00:00:00 +0000</pubDate> 
<guid>https://www.heckjj.com/jboss-server-bug-html/#blogcomment</guid> 
<description>
<![CDATA[ 
	
]]>
</description>
</item>
</channel>
</rss>