Spring Cloud Gateway远程代码执行漏洞POC,基于命令执行的基础上,增加了反弹shell操作
☆14Mar 9, 2022Updated 4 years ago
Alternatives and similar repositories for CVE-2022-22947-Spring-Cloud-Gateway-SpelRCE
Users that are interested in CVE-2022-22947-Spring-Cloud-Gateway-SpelRCE are comparing it to the libraries listed below
Sorting:
- 春秋云境靶场解题攻略☆10Jul 31, 2023Updated 2 years ago
- CVE-2022-22947批量☆72Mar 4, 2022Updated 4 years ago
- grafana CVE-2021-43798任意文件读取漏洞POC,采用多插件轮训检测的方法,允许指定单URL和从文件中读取URL☆17Jan 27, 2022Updated 4 years ago
- 零成本实现CVE每日推送☆22Mar 7, 2024Updated 2 years ago
- CVE-2019–9193 - PostgreSQL 9.3-12.3 Authenticated Remote Code Execution☆20May 26, 2022Updated 3 years ago
- iis高版本短文件名猜解脚本,适用于iis7.5~10.x版本的iis中间件。☆68Apr 6, 2025Updated 11 months ago
- Spring Cloud Gateway 远程代码执行漏洞Exp Spring_Cloud_Gateway_RCE_Exp-CVE-2022-22947☆77Nov 14, 2022Updated 3 years ago
- 支持常见中间件无文件落地冰蝎内存马注入&&文件上传agent冰蝎马注入☆33Mar 17, 2023Updated 2 years ago
- shiro_rememberme 反序列化漏洞 利用EXP☆30Nov 22, 2019Updated 6 years ago
- Quickly upload files to aliyun OSS by aliyun-oss-csharp-sdk☆76Oct 4, 2020Updated 5 years ago
- a 'pentest' udf plugin of MySQL.☆39Mar 31, 2022Updated 3 years ago
- 基于API的一款企业信息查询工具,快速获取企业的信息,省去收集的麻烦过程☆34Nov 8, 2021Updated 4 years ago
- Spring Cloud Function Spel命令执行漏洞☆39Mar 27, 2022Updated 3 years ago
- ☆44Oct 9, 2023Updated 2 years ago
- 对文件进行bcel编码或解码☆39Dec 10, 2021Updated 4 years ago
- Pentest 收集、整理、分享☆45May 30, 2021Updated 4 years ago
- Zerologon自动化脚本☆97Sep 20, 2023Updated 2 years ago
- Abusing Impersonation Privileges on Windows 10 and Server 2019 本地提权2012-2019☆35May 2, 2020Updated 5 years ago
- 漏洞复现,exp、poc收集整理☆11Jun 4, 2021Updated 4 years ago
- 资产测绘输出xlsx表格☆14Sep 10, 2024Updated last year
- Evasion kit for Cobalt Strike☆30Jan 16, 2026Updated last month
- woodpecker框架专用bcel库☆12Apr 30, 2021Updated 4 years ago
- CVE-2022-39197 RCE POC☆13Oct 22, 2022Updated 3 years ago
- © 哨兵博客 V3 Power by Bin4xin | Jekyll | Github Action.☆11Updated this week
- A proof of concept AMSI & ETW bypass using trampolines for hooking and modifying execution flow☆18Jun 26, 2025Updated 8 months ago
- Spring4Shell (CVE-2022-22965)☆12Apr 7, 2022Updated 3 years ago
- just a python script for cve-2017-12615☆11Oct 1, 2017Updated 8 years ago
- CobaltStrike优秀资源☆91Jan 8, 2022Updated 4 years ago
- 金蝶云星空 Kingdee-erp-Unserialize-RCE POC&&EXP☆52Jun 25, 2023Updated 2 years ago
- Springboot的一个webshell☆45Jul 10, 2019Updated 6 years ago
- 模式化生成自然人社工字典☆13Jan 10, 2022Updated 4 years ago
- 递归式主动检测脆弱路径的工具☆17Mar 24, 2025Updated 11 months ago
- ☆11Nov 7, 2016Updated 9 years ago
- Spring Cloud Gateway Actuator API SpEL表达式注入命令执行(CVE-2022-22947) 注入哥斯拉内存马☆59May 16, 2022Updated 3 years ago
- CVE-2021-42287/CVE-2021-42278 Exploiter☆13Jan 12, 2023Updated 3 years ago
- ☆11Mar 9, 2022Updated 4 years ago
- ShadowDropper is a utility for covertly delivering and executing payloads on a target system.☆27Jul 4, 2025Updated 8 months ago
- WannaCry_HTA 是一个基于 HTA(HTML Application)技术开发的高度仿真 WannaCry 勒索病毒界面模拟程序。该项目简单、完全可控,专为安全研究、应急演练和安全教育场景设计。界面UI参考zR00t1师傅项目编写。☆25Aug 13, 2025Updated 6 months ago
- 💎 | RubyRedOps is a repository for advanced Red Team techniques and offensive malware, focused on Ruby☆10Apr 21, 2025Updated 10 months ago