Skip to content

Commit fe5c6dc

Browse files
author
Ricardo Almeida
committed
Orientdb 2.2.x RCE - Update documentation
1 parent 6c22f78 commit fe5c6dc

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

documentation/modules/exploit/multi/http/orientdb_exec.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,11 +1,11 @@
11
This module leverages a privilege escalation on OrientDB to execute unsandboxed OS commands.
22

3-
All versions from 2.2.1 up to 2.2.22 should be vulnerable.
3+
All versions from 2.2.2 up to 2.2.22 should be vulnerable.
44

55
The module is based on the public PoC found here: https://blogs.securiteam.com/index.php/archives/3318
66

77
## Vulnerable Application
8-
OrientDB 2.2.1 <= 2.2.22
8+
OrientDB 2.2.2 <= 2.2.22
99

1010
## Installation
1111
Download a vulnerable OrientDB version here: http://orientdb.com/download-previous/

0 commit comments

Comments
 (0)