Monday, February 25, 2013

Java Applet JMX Remote Code Execution

According to the latest news, exploit kits such as Cool EK and Popads are integrating a new exploit for Java, targeting Java 7u11. An exploit for CVE-2013-0431 has been analyzed and shared by SecurityObscurity, and is also now available as a Metasploit module with some improvements for testability. We would like to use this blog post to share some details about the vulnerabilities abused by this new Java exploit.
Video demo 
Source : community.rapid7.com

No comments:

Post a Comment