H2 Database
Discovery
nmap -sC -sV TARGET
# 80/tcp open http Microsoft IIS httpd 10.0
# http-title: H2 Database Engine (redirect)
# 8082/tcp open http H2 database http console
# http-title: H2 Console9092/tcp open XmlIpcRegSvc?
Remote connections to this server are not allowed
org.h2.jdbc.JdbcSQLNonTransientConnectionExceptionhttp://TARGET/html/main.html
http://TARGET/html/tutorial.html
http://TARGET/html/features.html
http://TARGET/html/quickstart.htmlConsole Login
JNDI Callback Check
JNI Code Execution
Reverse Shell
References
Last updated