WebLogic Server Deserialization Remote Code Execution
https://packetstormsecurity.com/files/157795/weblogic_deserialize_badattrval.rb.txt
https://packetstormsecurity.com/files/157795/weblogic_deserialize_badattrval.rb.txthttps://packetstormsecurity.com/files/157795/WebLogic-Server-Deserialization-Remote-Code-Execution.htmlThu, 21 May 2020 16:42:59 GMTThis Metasploit module exploits a Java object deserialization vulnerability in multiple versions of WebLogic. Unauthenticated remote code execution can be achieved by sending a serialized BadAttributeValueExpException object over the T3 protocol to vulnerable WebLogic servers.