Skip to content

Releases: tdy218/ysoserial-cve-2018-2628

v0.1

09 May 11:49
5033615
Compare
Choose a tag to compare

1. Commit two ways for bypassing Oracle WebLogic CVE-2018-2628 Patch

  • JRMPClient2.class (By using java.rmi.activation.Activator)
  • JRMPClient3.class (Wrap java.rmi.registry.Registry in weblogic.jms.common.StreamMessageImpl)