Apache OFBiz CVE-2023-49070 CVE-2023-51467 RCE, Reverse Shell, Weaponize
by LkStr - Saturday January 13, 2024 at 04:18 AM
#1
Apache OFBiz is an open source enterprise resource system that is used in a wide range of software, including Atlassian Jira, which is used by more than 120,000 companies. The authentication bypass vulnerability, listed as CVE-2023-51467, has a CVSS score of 9.8 and could expose sensitive data or allow an unauthenticated attacker to execute arbitrary code. The critical vulnerability in Apache OFBiz was hit with a surge in exploitation attempts in recent weeks. 

This is the discoverer's blog, and many technical details are disclosed: https://blog.sonicwall.com/en-us/2023/12...y-authbiz/ .

This is two wonderful POCs: 
https://github.com/abdoghazy2015/ofbiz-C...70-RCE-POC 
https://github.com/jakabakos/Apache-OFBi...ion-Bypass

I used abdoghazy2015 's POC and got the user flag of the HTB "Drive" machineSmile

This is the latest article about weaponizing, which is wonderful. They developed and open-sourced a memory-resident payload for Apache OFBiz’s CVE-2023-51467: 
https://vulncheck.com/blog/ofbiz-cve-2023-51467
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  CVE-2025-40554 - SolarWinds Web Help Desk Auth Bypass & RCE PoC miyako 3 74 02-07-2026, 03:32 PM
Last Post: cysc
  POC CVE-2025-24071 caca28sapo1 15 806 02-07-2026, 08:53 AM
Last Post: hacker0123
  HPE OneView RCE Exploit [CVE-2025-37164] Hawx01 8 262 02-06-2026, 07:08 PM
Last Post: hacker0123
  CitrixBleed / CVE-2023-4966 cccp 10 6,798 02-06-2026, 01:36 AM
Last Post: temptest
  WordPress LFI to RCE - CVE-2025-0366 Serious 1 458 02-05-2026, 09:53 AM
Last Post: Sammm89



 Users browsing this thread: 1 Guest(s)