Ajp Ghostcat

Exploit Apache JServ Protocol (AJP) misconfigurations and Ghostcat (CVE-2020-1938) for file read and remote code execution on Apache Tomcat. Use when port 8009 is open or AJP connector is exposed.

blacklanternsecurity 78056d6 18.6 KB Updated

File contents

blacklanternsecurity/red-run/tree/main/skills/web/ajp-ghostcat commit 78056d6e8d

Frequently asked questions

npx skillmds@latest add blacklanternsecurity/ajp-ghostcat