Apache Tomcat CGIServlet enableCmdLineArguments Remote Code Execution
Posted by deepcore on July 3, 2019 – 3:23 pm
This Metasploit module exploits a vulnerability in Apache Tomcat’s CGIServlet component. When the enableCmdLineArguments setting is set to true, a remote user can abuse this to execute system commands, and gain remote code execution.
Post a reply
You must be logged in to post a comment.