Files
beef/modules/network/jboss_jmx_upload_Exploit/config.yaml
antisnatchor 997a021fe1 Added Jboss 6.0.0M1 JMX Deploy exploit.
git-svn-id: https://beef.googlecode.com/svn/trunk@951 b87d56ec-f9c0-11de-8c8a-61c5e9addfc9
2011-05-02 19:01:29 +00:00

11 lines
674 B
YAML

beef:
module:
jboss_jmx_upload_exploit:
enable: true
category: "Network"
name: "Jboss 6.0.0M1 JMX Deploy Exploit"
description: "Deploy a JSP reverse shell (Metasploit one) using the JMX exposed deploymentFileRepository MBean of JBoss. The first request made is a HEAD one to bypass auth and deploy the malicious JSP, the second request is a GET one that triggers the reverse connection to the specified MSF listener.<br>Remember to run the MSF multi/hanlder listener with java/jsp_shell_reverse_tcp as payload."
authors: ["antisnatchor", "l33tb0y"]
target:
working: ["ALL"]