NOMISEC-shoucheng3/vert-x3__vertx-web_CVE-2018-12542_3-5-3-CR1
NOMISEC WORKING POC
Exploit for CVE-2018-12542
- Eclipse Vert.x <3.5.3 - Path Traversal
AI Analysis
This repository contains a proof-of-concept for CVE-2018-12542, demonstrating how Vert.x SockJS Service Proxy can be exploited due to improper event bus bridge permissions. The example code shows how to register a service and configure the SockJS bridge to allow inbound/outbound traffic to a designated address, which could be abused for unauthorized access.
Attack Type
auth_bypass
Complexity
moderate
Reliability
reliable
MITRE ATT&CK
Click anywhere or press Esc to close