CVE-2021-29200
CRITICAL NUCLEIApache OFBiz < 17.12.07 - Unauthenticated Remote Code Execution via Unsafe Deserialization
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2021-29200. PoCs published by freeide. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2021-29200, an Apache OFBiz RCE vulnerability. The exploit leverages deserialization via a crafted SOAP request to execute arbitrary commands on the target system.
Description
Apache OFBiz has unsafe deserialization prior to 17.12.07 version An unauthenticated user can perform an RCE attack
Exploits (1)
nomisec
WORKING POC
by freeide · poc
https://github.com/freeide/CVE-2021-29200
This repository contains a functional exploit for CVE-2021-29200, an Apache OFBiz RCE vulnerability. The exploit leverages deserialization via a crafted SOAP request to execute arbitrary commands on the target system.
Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target:
Apache OFBiz
No auth needed
Prerequisites:
VPS with JRMPListener and netcat set up · ysoserial.jar in the same directory as the script
devstral-2 · analyzed Feb 18, 2026
Full analysis →
Nuclei Templates (1)
Apache OFBiz < 17.12.07 - Arbitrary Code Execution
CRITICALby your3cho
Shodan:
html:"OFBiz" || http.html:"ofbiz" || ofbiz.visitor=
FOFA:
app="Apache_OFBiz" || body="ofbiz" || app="apache_ofbiz"
References (7)
Core 7
Core References
Mailing List, Vendor Advisory x_refsource_misc
https://lists.apache.org/thread.html/re21d25d9fb89e36cea910633779c23f144b9b60596b113b7bf1e8097%40%3Cdev.ofbiz.apache.org%3E
Mailing List, Patch, Third Party Advisory mailing-list
x_refsource_mlist
http://www.openwall.com/lists/oss-security/2021/04/27/4
Mailing List mailing-list
x_refsource_mlist
https://lists.apache.org/thread.html/r708351f1a8af7adb887cc3d8a92bed8fcbff4a9e495e69a9ee546fda%40%3Cnotifications.ofbiz.apache.org%3E
Mailing List mailing-list
x_refsource_mlist
https://lists.apache.org/thread.html/re21d25d9fb89e36cea910633779c23f144b9b60596b113b7bf1e8097%40%3Cuser.ofbiz.apache.org%3E
Mailing List mailing-list
x_refsource_mlist
https://lists.apache.org/thread.html/r108a964764b8bd21ebd32ccd4f51c183ee80a251c105b849154a8e9d%40%3Ccommits.ofbiz.apache.org%3E
Mailing List mailing-list
x_refsource_mlist
https://lists.apache.org/thread.html/re21d25d9fb89e36cea910633779c23f144b9b60596b113b7bf1e8097%40%3Cannounce.apache.org%3E
Mailing List mailing-list
x_refsource_mlist
https://lists.apache.org/thread.html/rbe8439b26a71fc3b429aa793c65dcc4a6e349bc7bb5010746a74fa1d%40%3Ccommits.ofbiz.apache.org%3E
Scores
CVSS v3
9.8
EPSS
0.5537
EPSS Percentile
98.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-502
Status
published
Products (1)
apache/ofbiz
< 17.12.07
Published
Apr 27, 2021
Tracked Since
Feb 18, 2026