MobileIron MDM Hessian-Based Java Deserialization Remote Code Execution

This Metasploit module exploits an ACL bypass in MobileIron MDM products to execute a Groovy gadget against a Hessian-based Java deserialization endpoint.

Leave a Reply