455
VMScore

CVE-2020-26945

Published: 10/10/2020 Updated: 26/10/2020
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
CVSS v3 Base Score: 8.1 | Impact Score: 5.9 | Exploitability Score: 2.2
VMScore: 455
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

MyBatis prior to 3.5.6 mishandles deserialization of object streams.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mybatis mybatis

Github Repositories

Spring Boot Vulnerability (Keep On Updating) 0x01 Spring Boot Actuator Exposed Actuator endpoints allow you to monitor and interact with your Spring application Spring Boot includes a number of built-in endpoints and you can also add your own For example the health endpoint provides basic application health information The following endpoints are available: /autoconfig - D

Spring Boot Vulnerability (Keep On Updating) 0x01 Spring Boot Actuator Exposed Actuator endpoints allow you to monitor and interact with your Spring application Spring Boot includes a number of built-in endpoints and you can also add your own For example the health endpoint provides basic application health information The following endpoints are available: /autoconfig - D

关于学习java安全的一些知识,正在学习中ing,欢迎fork and star

Java 可能有一部分是java的基础语法 和一些java安全,主要是java安全和java框架漏洞的复现,加一些代码审计 2021/7/30 添加了java的一些命令执行shell 💛 💙 💜 ❤️ 💚 2021/8/15 添加了Java日常知识点 💛 💙 💜 ❤️ 💚 2021/8/31 添加了jackson序列化的exp 💛 💙 💜 ❤️ 💚 2021/9/06 添加Shir

是一些比赛中的好题,加上自己出的一些。。。

ctf-Challenge 自己出的一些ctf题,最开始没有docker环境,只有源代码。 2021 WMCTF2021-Web-Make PHP Great Again And Again WriteUp 没有复现。。。。 xnuca2020 easyjava 先去学习XStream 里面有一个CVE-2020-26945 mybatis二级缓存反序列化的问题 LCTF 2018 T4lk 1s ch34p,sh0w m3 the sh31l 个人感觉思路非常好 1 xml / json 2 netdoc