Y4er / CVE-2020-2555
Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE
☆177Updated 2 years ago
Alternatives and similar repositories for CVE-2020-2555:
Users that are interested in CVE-2020-2555 are comparing it to the libraries listed below
- Weblogic coherence.jar RCE☆178Updated 4 years ago
- Weblogic IIOP CVE-2020-2551☆333Updated 4 years ago
- forked from frohoff/ysoserial and added my own payloads.☆150Updated 4 years ago
- Apache Solr Exploits 🌟☆338Updated 4 years ago
- weblogic t3 deserialization rce☆267Updated 7 years ago
- CVE-2019-2725命令回显+webshell上传+最新绕过☆189Updated 5 years ago
- Shiro-721 RCE Via RememberMe Padding Oracle Attack☆255Updated 4 years ago
- A simple python script to generate XML payloads works for XMLDecoder based on ProcessBuilder and Runtime exec☆148Updated 4 years ago
- attackRmi☆252Updated 4 years ago
- Shiro RCE (Padding Oracle Attack)☆143Updated 5 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆102Updated 4 years ago
- Rusty Joomla RCE Exploit☆70Updated 2 years ago
- Confluence 未授权 RCE (CVE-2019-3396) 漏洞☆144Updated 5 years ago
- ☆142Updated 4 years ago
- how detect CVE-2020-2551 poc exploit python Weblogic RCE with IIOP☆211Updated last year
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- Yet another SharpSphere☆220Updated 3 years ago
- 解密weblogic AES或DES加密方法☆227Updated 4 years ago
- Joomla 3.4.6 – Remote Code Execution☆111Updated last year
- tomcat使用了自带session同步功能时,不安全的配置(没有使用EncryptInterceptor)导致存在的反序列化漏洞,通过精心构造的数据包, 可以对使用了tomcat自带session同步功能的服务器进行攻击。PS:这个不是CVE-2020-9484,9484…☆213Updated 4 years ago
- fastjson bypass autotype 1.2.68 with Throwable and AutoCloseable.☆223Updated 2 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆80Updated 4 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆181Updated 3 years ago
- RMI 反序列化环境 一步步☆211Updated 4 years ago
- Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()☆79Updated 4 years ago
- CVE-2019-1040 with Exchange☆248Updated 3 years ago
- SpringBoot_Actuator_RCE☆97Updated 4 years ago
- exploit for fastjson remote code execution vulnerability☆152Updated 2 years ago
- WarSQLKit is a fileless rootkit and attack tool I developed for MS-SQL. With this tool you can rootkit the SQL service that uses CLR on M…☆251Updated last year
- 修改的SweetPotato,使之可以用于CobaltStrike v4.0☆241Updated 4 years ago