• XSS.stack #1 – первый литературный журнал от юзеров форума

cve-2022-30333 Zimbra unrar vulnerability

В этой теме можно использовать автоматический гарант!

Windefender

RAID-массив
Пользователь
Регистрация
22.11.2019
Сообщения
81
Реакции
10
Гарант сделки
4
Hello I am selling cve-2022-30333 vulnerability

Complete details : https://blog.sonarsource.com/zimbra-pre-auth-rce-via-unrar-0day/

The exploit needs 3 things to be successful

1) Zimbra installed on default location
2) Vulnerable version of unrar and zimbra (zimbra in latest update started using 7zip)
3) All services of zimbra installed on same server
You should have a FUD jsp shell

Usually services of zimbra are installed on different servers. So there might be very few targets exploitable for you.

Anyone still needs to contact me.

What will you get?

Builder to generate rar file which when extracted will place your shell in zimbra webroot dir.

Only contact me if you know what you are buying and doing.

The vulnerability is not used by me on targets, except for testing on one live target.

Dealing through guarantor. Price 4kUSD

 


Напишите ответ...
Верх