yahanvesh

Results 3 comments of yahanvesh

@welk1n Does the exploit happen only with the call InitialContext.lookup() ? Ill paste the code flow

In my application, im able to override two params below- java.naming.provider.url which i set to rmi server generated by your code - rmi://54.x.x.x:1099/ngiawf java.naming.factory.initial=com.sun.jndi.rmi.registry.RegistryContextFactory I have groovy and Apache bean...

The issue seems resolved now, tried on macOS Sierra. It will great to add this as a note in README. Getting a key binding which is free was hard, i...