Garck3h / cve-2023-38831View external linksLinks
一款用于生成winrar程序RCE(即cve-2023-38831)的POC的工具。
☆129Aug 27, 2023Updated 2 years ago
Alternatives and similar repositories for cve-2023-38831
Users that are interested in cve-2023-38831 are comparing it to the libraries listed below
Sorting:
- 利用 Exchange 服务器 Web 接口爆破邮箱账户 | Brute force email accounts using Exchange server web endpoints☆93Sep 13, 2024Updated last year
- ☆28Aug 12, 2023Updated 2 years ago
- 反取证程序,类似usbkill☆11Apr 22, 2023Updated 2 years ago
- 一种安全加密数据的方式,数据可以实现自校验,防止数据损坏和篡改(A way to securely encrypt data, the data can be self-verified to prevent data damage and tampering)☆64Dec 16, 2023Updated 2 years ago
- 泛微最近的漏洞利用工具(PS:2023)☆479Dec 14, 2023Updated 2 years ago
- NTLM/Negotiate authentication over HTTP that supports Pass The Hash Mode (PtH)☆17Sep 13, 2024Updated last year
- 一款用Go语言编写的数据库自动化提权工具,支持Mysql、MSSQL、Postgresql、Oracle、Redis数据库提权、命令执行、爆破以及ssh连接☆858Aug 30, 2023Updated 2 years ago
- Weblogic CVE-2023-21839 RCE (无需Java依赖一键RCE)☆114Feb 24, 2023Updated 2 years ago
- 用友NC系列漏洞检测利用工具,支持一键检测、命令执行回显、文件落地、一键打入内存马、文件读取等☆580Aug 19, 2023Updated 2 years ago
- JavaPassDump☆272Jan 7, 2022Updated 4 years ago
- Confluence CVE 2021,2022,2023 利用工具,支持命令执行,哥斯拉,冰蝎 内存马注入☆548Feb 1, 2024Updated 2 years ago
- AWD 文件监控☆28Sep 14, 2023Updated 2 years ago
- A Go library for generating Java deserialization payloads.☆155Sep 9, 2024Updated last year
- WeblogicScan一键检测☆128May 6, 2024Updated last year
- DBeaver数据库密码解密工具☆200Nov 29, 2023Updated 2 years ago
- 禅道研发项目管理系统`misc-captcha-user`认证绕过后台命令注入漏洞☆108Apr 24, 2023Updated 2 years ago
- Java web路由内存分析工具☆437May 22, 2025Updated 8 months ago
- 用java实现构造openwire协议,利用activeMQ < 5.18.3 RCE 回显利用 内存马注入☆288Nov 20, 2023Updated 2 years ago
- JDBC Attack Tricks☆154Sep 3, 2023Updated 2 years ago
- EXP for CVE-2023-28434 MinIO unauthorized to RCE☆319Apr 4, 2023Updated 2 years ago
- 一款支持自定义的 Java 回显载荷生成工具|A customizable Java echo payload generation tool.☆461Jan 12, 2025Updated last year
- portreuse reuseport 端口复用☆61Aug 27, 2023Updated 2 years ago
- 哥斯拉nacos后渗透插件 maketoken adduser☆150Jul 7, 2023Updated 2 years ago
- 一个用于修改右键插件菜单层级的Burpsuite插件。A simple BurpSuite extension to change extension context menu level.☆30Feb 4, 2024Updated 2 years ago
- CVE-2024-21006 exp☆18Jul 29, 2024Updated last year
- 无需文件落地Agent内存马生成器☆248May 30, 2024Updated last year
- 添加计划任务方法集合☆309Aug 6, 2023Updated 2 years ago
- 一款dump hash工具配合后渗透的利用☆275Apr 21, 2023Updated 2 years ago
- Common Exploitation Techniques for Java RCE Vulnerabilities in Real-World Scenarios | 实战场景较通用的 Java Rce 相关漏洞的利用方式☆545Mar 6, 2025Updated 11 months ago
- WeblogicTool,GUI漏洞利用工具,支持漏洞检测、命令执行、内存马注入、密码解密等(深信服深蓝实验室天威战队强力驱动)☆1,773Nov 1, 2023Updated 2 years ago
- POC for Spring Kafka Deserialization Vulnerability CVE-2023-34040☆46Oct 8, 2025Updated 4 months ago
- 一款基于go的windows信息收集工具,主要收集目标机器rdp端口、mstsc远程连接记录、mstsc 密码和安全事件中4624、4625登录事件记录☆289Jul 18, 2022Updated 3 years ago
- 懒鬼插件/审计过的后的渗透插件/我凭本事打的SESSION凭什么还要我自己动手后渗透?☆245Sep 9, 2025Updated 5 months ago
- 亿赛通电子文档安全管理系统XStream反序列化漏洞任意文件上传利用☆120Aug 9, 2024Updated last year
- 一键修改exe、dll的编译时间、创建时间、修改时间和访问时间☆197Apr 16, 2023Updated 2 years ago
- protoscanner是一个使用纯Go编写的协议识别仓库,脱胎于NMAP☆28Aug 30, 2023Updated 2 years ago
- Confluence未授权添加管理员用户(CVE-2023-22515)漏洞利用工具☆110Oct 16, 2023Updated 2 years ago
- Yapi mock script RCE another version. Webshell way. 另一种 Webshell 方式的 Yapi 命令执行的方法 相比于其他的利用方式 更加微操 和可控 影响更小☆66Jul 4, 2024Updated last year
- 一个能够利用MSSQL的xp_cmdshell功能来进行流量代理的脚本,用于在站酷分离且不出网SQL注入进行代理☆107Sep 19, 2022Updated 3 years ago