active Retires: May 1, 2026
Medium
HTB DevArea Complete Writeup - CVE-2022-46364 Apache CXF LFI & HoverFly RCE
A comprehensive penetration testing guide exploiting Apache CXF XOP/MTOM file inclusion, HoverFly middleware command injection, and a world-writable /bin/bash privilege escalation to achieve full root compromise.
Comments