ElasticSearch Snapshot API Directory Traversal
Posted by deepcore on October 16, 2015 – 10:46 am
This Metasploit module exploits a directory traversal vulnerability in ElasticSearch, allowing an attacker to read arbitrary files with JVM process privileges, through the Snapshot API.
Post a reply
You must be logged in to post a comment.