
este repositório contém um POC do CVE-2021-44228 (log4j2shell) como parte de uma pesquisa de segurança
CVE-2021-44228 (log4j2shell) PoC como parte de uma pesquisa de segurança para um patch de vulnerabilidade
In this repository I will cover several topics and implementations
which provide a PROOF OF CONCEPT regarding the Log4J 2.17.0 vulnerability .
The main goal is to provide a PATCH for CVE-2021-44228 and ensure
a JNDI RCE bypass via Headers and/or Body payloads.
Hence,
I will provide two types of application for this PoC .
1. Apache J2EE application which is vulnerable .
2. Apache J2EE application which were patched .