Java_RMI


Nmap discovered a Java RMI server on the target port 39753 The running service is Java RMI

┌──(kali㉿kali)-[~/PEN-200/PG_PRACTICE/pelican]
└─$ java -jar ./rmg-5.1.0-jar-with-dependencies.jar enum $IP 39753
[+] RMI Registry Enumeration
[+]
[+] 	- Specified endpoint is not an RMI registry
[+] 	  Skipping registry related checks.
[+]
[+] RMI server codebase enumeration:
[+]
[+] 	- The remote server does not expose any codebases.
[+]
[+] RMI Security Manager enumeration:
[+]
[+] 	- Caught Exception containing 'no security manager' during RMI call.
[+] 	  --> The server does not use a Security Manager.
[+] 	  Configuration Status: Current Default
[+]
[+] RMI server JEP290 enumeration:
[+]
[+] 	- DGC rejected deserialization of java.util.HashMap (JEP290 is installed).
[+] 	  Vulnerability Status: Non Vulnerable
[+]
[+] RMI ActivationSystem enumeration:
[+]
[+] 	- Caught NoSuchObjectException during activate call (activator not present).
[+] 	  Configuration Status: Current Default

Testing with the remote-method-guesser tool N/A