Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 10:20:44 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1293918286&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2Ffiledesc%2Fjava_rmi_connection_impl.rb.txt.html%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1293918286.1338200444.1338200444.1338200444.1%3B%2B__utmz%3D32867617.1338200444.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Java RMIConnectionImpl Deserialization Privilege Escalation Exploit http://packetstormsecurity.org/files/93626/java_rmi_connection_impl.rb.txt http://packetstormsecurity.org/files/93626/java_rmi_connection_impl.rb.txt http://packetstormsecurity.org/files/93626/Java-RMIConnectionImpl-Deserialization-Privilege-Escalation-Exploit.html Thu, 09 Sep 2010 02:05:17 GMT This Metasploit module exploits a vulnerability in the Java Runtime Environment that allows to deserialize a MarshalledObject containing a custom classloader under a privileged context. The vulnerability affects version 6 prior to update 19 and version 5 prior to update 23.