Sploitus

Exploit for Deserialization of Untrusted Data in Apache Tomcat

githubexploit Β· 2020-09-05

Exploit Code

README10 lines
## https://sploitus.com/exploit?id=743F51FB-8BF4-5425-AEFA-10B2A14C8F3B
CVE-2020-9484-exploit
Apache Tomcat Remote code execution

Before execute the script please change the ysoserial path according to your file path.  

ysoserial : https://github.com/frohoff/ysoserial


for more reference : https://www.redtimmy.com/java-hacking/apache-tomcat-rce-by-deserialization-cve-2020-9484-write-up-and-exploit/