cve-2013-2094

1 article
sort: new top best
clear filter
0 6/10

Researcher bypassed WAF protections against Apache Struts CVE-2013-2251 by embedding OGNL RCE payloads within a legitimate redirect parameter, then escalated from remote code execution to root shell via SSH key manipulation and kernel CVE-2013-2094 exploitation.

CVE-2013-2251 CVE-2013-2094 Apache Struts Avinash Jain Kunal Aggarwal
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 6 hours ago · details