Exploitation Summary
EIP tracks 3 public exploits for CVE-2019-0227. PoCs published by David Yesland, ianxtianxt, 1475210817.
AI-analyzed exploit summary This exploit leverages CVE-2019-0227 to achieve remote code execution on Apache Axis 1.4 by deploying a malicious JSP payload via SSRF and MITM techniques. It uses ARP spoofing and iptables redirection to intercept and manipulate traffic.
Description
A Server Side Request Forgery (SSRF) vulnerability affected the Apache Axis 1.4 distribution that was last released in 2006. Security and bug commits commits continue in the projects Axis 1.x Subversion repository, legacy users are encouraged to build from source. The successor to Axis 1.x is Axis2, the latest version is 1.7.9 and is not vulnerable to this issue.
Exploits (3)
This exploit leverages CVE-2019-0227 to achieve remote code execution on Apache Axis 1.4 by deploying a malicious JSP payload via SSRF and MITM techniques. It uses ARP spoofing and iptables redirection to intercept and manipulate traffic.
This is a functional exploit for CVE-2019-0227, targeting Apache Axis 1.4. It leverages a man-in-the-middle (MITM) attack via ARP spoofing and SSRF to deploy a malicious JSP payload, achieving remote code execution.
This repository contains functional exploit code for CVE-2019-0227, targeting Apache Axis 1.4 with two distinct methods: JSP webshell deployment and Freemarker-based direct command execution. The scripts demonstrate remote command execution by leveraging the AdminService interface when enableRemoteAdmin is enabled.
References (13)
Scores
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H