OpenSource GeoServer RCE
by Loki - Monday July 8, 2024 at 08:42 AM
#1
GeoServer is an open source server that allows users to share and edit geospatial data.

Prior to versions 2.23.6, 2.24.4, and 2.25.2, multiple OGC request parameters allow Remote Code Execution (RCE) by unauthenticated users.
Hidden Content
You must register or login to view this content.

Omnicer
Reply
#2
I heard on version 29 or above this thing already patched
Reply
#3
will wait and hope it works
Reply
#4
well, I hope it works
Reply
#5
Finally a decent exploit
Reply
#6
i need used it's haha.
Reply
#7
thank you i will check
Reply
#8
(Jul 08, 2024, 08:42 AM)Loki Wrote:
GeoServer is an open source server that allows users to share and edit geospatial data.

Prior to versions 2.23.6, 2.24.4, and 2.25.2, multiple OGC request parameters allow Remote Code Execution (RCE) by unauthenticated users.


Omnicer

thank you for share
Reply
#9
let’s grub some geodata together
Reply
#10
gonna pentest with this bug
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  {SECRET} DATABASE OF EXPLOITS lulagain 438 26,878 5 hours ago
Last Post: NUKEx
  [POC] Google OAuth "MultiLogin" endpoint 0-day Farfallaiero 108 13,839 Yesterday, 05:42 PM
Last Post: nobcoderfck
  Ban Any Discord Exploit phineasfisherman 7 475 Yesterday, 10:16 AM
Last Post: sniperx86
  Dokan Pro Unauthenticated SQL Injection POC | CVSS 10 Loki 42 3,785 Yesterday, 08:39 AM
Last Post: d39ug
  New Zer0 Day Wordpress A3g00n 81 3,418 May 05, 2026, 03:06 AM
Last Post: DirtyEra

Forum Jump:


 Users browsing this forum: 1 Guest(s)