As the issue is now fixed, I can disclose the details of the @IndiaPostOffice vulnerability.
-
-
Hmm so it was Apache Struts 2 web framework. So conclusion is that an ideal web framework should not allow remote code execution over http.
-
One of the antivirus "Quick Heal" has already published blog on it.http://blogs.quickheal.com/cve-2017-9805-apache-struts-2-remote-code-execution-vulnerability-quick-heal-security-labs/ …
End of conversation
New conversation -
-
-
Bravo
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Not all heroes wear capes
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.