π’Spring4Shell: CVE-2022-22965
Interactive lab for exploiting Spring4Shell (CVE-2022-22965) in the Java Spring Framework
Room Attributes
Value
Task 1 - Info Introduction and Deploy
Deploy the target machine by clicking the green button at the top of this task!
Task 2 - Tutorial Vulnerability Background
Read the task information and understand how Spring4Shell works at a high level.
Task 3 - Practical Exploitation
Follow the steps in the task to exploit Spring4Shell and obtain a webshell.
[Bonus Question: Optional] Use your webshell to obtain a reverse/bind shell on the target.
What is the flag in /root/flag.txt?
/root/flag.txt?Task 4 - Info Conclusion
I understand and can abuse Spring4Shell!
Last updated
