
Proof-of-Concept-Exploit für CVE-2021-35587, eine nicht authentifizierte Remote-Codeausführungs-Schwachstelle in Oracle Access Manager, die eine vollständige Übernahme des betroffenen Systems ermöglicht.
** Referenz - Ref-Quelle - [[https://testbnull.medium.com/oracle-access-manager-pre-auth-rce-cve-2021-35587-analysis-1302a4542316][Oracle Access Manager pre-authentication Remote Code Execution CVE-2020-35587]] - [[https://github.com/cckuailong/reapoc/blob/4eb15938ed9f44aa7db47fdbb88bc45f556b02bb/2021/CVE-2021-35587/poc/nuclei/CVE-2021-35587.yaml][Nuclei POC ]] - Ref-Risiko - [[https://nvd.nist.gov/vuln/detail/CVE-2021-35587][NVD]] - CVE - [[https://github.com/CVEProject/cvelist/blob/master/2021/35xxx/CVE-2021-35587.json][CVE-2021-35587]] - [[https://nvd.nist.gov/vuln/detail/CVE-2021-35587][NVD]] - Ref-Poc-Engine - [[https://github.com/antx-code/pocx][pocx]]