JBoss EJBInvokerServlet Java Deserialization Vulnerability Remote Code Execution Exploit

JBoss Application Server is prone to a remote vulnerability that allows attackers to take advantage of a deserialization vulnerability present in the commons-collections java library. By exploiting known methods, it is possible to remotely load a InvokerTransformer java class, wich allows the execution of system commands.
Exploit Platform
Product Name