Тёмный
No video :(

GeoServer OGC Filter SQL Injection 

vulnmachines
Подписаться 6 тыс.
Просмотров 579
50% 1

GeoServer & GeoTools SQL Injection (CVE-2023-25157 & CVE-2023-25158)
GeoServer is an open-source software server written in Java that can view, edit, and share geospatial data. It is designed to be a flexible, efficient solution for distributing geospatial data from various sources such as Geographic Information System (GIS) databases, web-based data, and personal datasets.
The vulnerabilities in question are deeply embedded within the filter and function expressions defined by the Open Geospatial Consortium (OGC) standards. These expressions form the backbone of geospatial data querying and manipulation, playing a pivotal role in the functionality of systems like GeoServer and GeoTools.
Vulnmachines​​ - Place for Pentesters
Vulnmachines is an online cyber security training platform with a massive number of labs, allowing individuals, students, cyber professionals, companies, universities, and all kinds of organizations around the world to enhance their practical skills with Real-world enterprise scenarios.
Visit: www.vulnmachin...​​​​​
The SecOps Group is a globally recognized IT security company having extensive and varied experience in providing cybersecurity consultancy and education services. At The SecOps Group, we believe that security is a continuous process, which has to progress with time and in accordance with the customer needs and constantly evolving threats. Our core business comprises of two units:
1. Consultancy:
Pentesting and Advisory
The SecOps Group are cybersecurity experts offering CREST-accredited security consultancy services.
2. Education:
Pentesting Exams
Through our exams, we provide an authentic and credible certification that is modern, relevant and represents real-life business risks.
For business: secops.group/
Follow us
Twitter: / thesecopsgroup
Instagram: / thesecopsgroupuk
LinkedIn: / secops-group

Опубликовано:

 

9 авг 2023

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии    
Далее
ImageMagick Arbitrary File Read vulnerability
4:25
Просмотров 1 тыс.
advanced SQL injection
12:18
Просмотров 57 тыс.
Whoa
01:00
Просмотров 46 млн
The cloud is over-engineered and overpriced (no music)
14:39
Kerberos Authentication Explained | A deep dive
16:52
Просмотров 339 тыс.
I've been using Redis wrong this whole time...
20:53
Просмотров 354 тыс.
The AI Cybersecurity future is here
26:42
Просмотров 156 тыс.
The basics of SQL for Cybersecurity Professionals
9:25
Observability vs. APM vs. Monitoring
9:41
Просмотров 157 тыс.
SQL Injection Attacks Using OWASP Zap Fuzzer
7:40
Просмотров 19 тыс.
Metabase remote code execution
3:05
Просмотров 624