Open princechaddha opened 1 month ago
/bounty $200
/attempt #10893
on this issue to claim attempt.#10893
in the PR body to claim the bounty.Thank you for contributing to projectdiscovery/nuclei-templates and helping us democratize security!
Acceptance Criteria: The template must include a complete POC and should not rely solely on version-based detection. Contributors are required to provide debug data(
-debug
) along with the template to help the triage team with validation. Rewards will only be given once the template is fully validated by the team. Templates that are incomplete or invalid will not be accepted. Avoid adding code templates for CVEs that can be achieved using HTTP, TCP, or JavaScript. Such templates are blocked by default and wonβt produce results, so we prioritize creating templates with other protocols unless exceptions are made. You can check the FAQ for the Nuclei Templates Community Rewards Program here.
Add a bounty β’ Share on socials
Attempt | Started (GMT+0) | Solution |
---|---|---|
π΄ @aybanda | Oct 26, 2024, 7:27:03 PM | WIP |
π΄ @yanisoln | Nov 9, 2024, 12:24:42 AM | WIP |
π΄ @hnd3884 | Nov 10, 2024, 11:06:26 AM | #11171 |
/attempt #10893
Algora profile | Completed bounties | Tech | Active attempts | Options |
---|---|---|---|---|
@aybanda | 1 bounty from 1 project | Cancel attempt |
The bounty is up for grabs! Everyone is welcome to /attempt #10893
π
@ritikchaddha is java available to use as a code engine?
/attempt #10893
Algora profile | Completed bounties | Tech | Active attempts | Options |
---|---|---|---|---|
@yanisoln | 1 bounty from 1 project | Cancel attempt |
/attempt #10893
Algora profile | Completed bounties | Tech | Active attempts | Options |
---|---|---|---|---|
@hnd3884 | 1 projectdiscovery bounty | Java, PHP, HTML & more |
Cancel attempt |
[!NOTE] The user @yanisoln is already attempting to complete issue #10893 and claim the bounty. We recommend checking in on @yanisoln's progress, and potentially collaborating, before starting a new solution.
π‘ @hnd3884 submitted a pull request that claims the bounty. You can visit your bounty board to reward.
@yanisoln: Reminder that in 4 days the bounty will become up for grabs, so please submit a pull request before then π
Is there an existing template for this?
Template requests
Description: Apache Tomcat versions before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, and 9.x before 9.0.0.M12 are vulnerable to remote code execution if JmxRemoteLifecycleListener is used and the JMX ports are exposed to attackers. The vulnerability exists due to inconsistent credential type handling, which was not aligned with the CVE-2016-3427 Oracle patch. Attackers with access to JMX ports can exploit this issue to execute arbitrary code remotely.
Severity: Critical
POC:
References:
Shodan Query: html:"Apache Tomcat" cpe:"cpe:2.3:a:apache:tomcat"
CPE: cpe:2.3:a:apache:tomcat:::::::: cpe:2.3:a:apache:tomcat:9.0.0:-:::::::*
Anything else?
No response