Demonstrating CVE-2020-4464: An RCE Bug in the IBM WebSphere Application Server

Опубликовано: 29 Сентябрь 2020
на канале: Trend Zero Day Initiative
2,758
17

This video demonstrates a code execution bug in the IBM WebSphere Application Server. The specific flaw exists within the handling of the SOAP protocol. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data.


For full details on the bug used in this video, read the blog at:
https://www.zerodayinitiative.com/blo...