Post

Jerry - CVE

Apache Tomcat 7.0.88 > Access Manager on webpage > login form > bruteforce > Malicious war upload > admin shell > flags in desktop

type “2 for the price of 1.txt”

use auxiliary/scanner/http/tomcat_mgr_login use exploit/multi/http/tomcat_mgr_upload

This post is licensed under CC BY 4.0 by the author.