VMware View Planner 4.6 Remote Code Execution
Posted by deepcore on March 20, 2021 – 5:32 pm
This Metasploit module exploits an unauthenticated log file upload within the log_upload_wsgi.py file of VMWare View Planner 4.6 prior to 4.6 Security Patch 1. Successful exploitation will result in remote code execution as the apache user inside the appacheServer Docker container.
Post a reply
You must be logged in to post a comment.