Exploit for Deserialization of Untrusted Data in Apache Ofbiz
Exploit Code
## https://sploitus.com/exploit?id=C43D1529-7393-5DA8-AEA7-4ED3D87FB150
# CVE-2021-26295 Apache-OFBiz
CVE-2021-26295: Apache OFBiz RMI deserialization vulnerability
It is necessary to place the ysoserial.jar file in the correct directory, and Java higher versions cannot be used.