Liferay Portal JSONWS Java Deserialization Vulnerability Remote Code Execution Exploit

This module uses an unauthenticated java deserialization vulnerability via JSONWS in Liferay Portal to upload and execute a java class file to gain arbitrary code execution on the affected system.
Exploit Platform
Exploit Type
Product Name