Apache Jetspeed-2 Easy Hack & Exploit
Haxx.ml has the story¹ This is one of those moments where the latest version of the program(Jetspeed 2.3.0) is hackable using a SQL injection method from CVE-2016-0710. It behooves us to review CVE-2016-0710: “The Jetspeed User Manager service, part of the Jetspeed Administrative Portlets, is vulnerable to SQL injection. When performing a search in these tools, … Read more