Apache 远程代码执行 (CVE-2021-42013)批量检测工具:Apache HTTP Server是美国阿帕奇(Apache)基金会的一款开源网页服务器。该服务器具有快速、可靠且可通过简单的API进行扩充的特点,发现 Apache HTTP Server 2.4.50 中针对 CVE-2021-41773 的修复不够充分。攻击者可以使用路径遍历攻击将 URL 映射到由类似别名的指令配置的目录之外的文件。如果这些目录之外的文件不受通常的默认配置“要求全部拒绝”的保护,则这些请求可能会成功。如果还为这些别名路径启用了 CGI 脚本,则这可能允许远程代码执行。此问题仅影响 Apache 2.4.49 和 Apache 2.4.50,而不影响更早 版本。
☆10Dec 24, 2021Updated 4 years ago
Alternatives and similar repositories for CVE-2021-42013-Apache-RCE-Poc-Exp
Users that are interested in CVE-2021-42013-Apache-RCE-Poc-Exp are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Grafanav8.*版本任意文件读取漏洞批量检测工具:该漏洞目前为0day漏洞,未授权的攻击者利用该漏洞,能够获取服务器敏感文件。☆13Dec 23, 2021Updated 4 years ago
- PHP漏洞靶场,涉及OWASP TOP10漏洞,新手必学!☆12Jun 13, 2022Updated 3 years ago
- shiro反序列化利用综合利用,包含(回显执行命令/注入内存马)原版中NoCC的问题 https://github.com/j1anFen/shiro_attack☆12May 1, 2022Updated 3 years ago
- IP格式整理脚本☆10Nov 11, 2021Updated 4 years ago
- spring-core单个图形化利用工具,CVE-2022-22965及修复方案已出☆17Apr 2, 2022Updated 3 years ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- 金蝶云星空 erp反序列化命令执行漏洞批量扫描POC&EXP,带命令回显☆33Jul 20, 2023Updated 2 years ago
- Matu7 渗透测试工具箱-(不含工具)☆14Jul 31, 2025Updated 7 months ago
- NMAP扫描网络资产自动导入到Elasticstack进行展示☆11Apr 25, 2020Updated 5 years ago
- F-Box 渗透测试武器库☆14Aug 28, 2021Updated 4 years ago
- BotNet Scanner For Educational Purposes.☆19Mar 7, 2020Updated 6 years ago
- Highly performant layer7 DoS tool☆15Sep 14, 2025Updated 6 months ago
- ZipCracker是Hx0战队出品的一款功能强大的Zip密码破解工具。它集成了字典攻击、掩码攻击和CRC32碰撞等多种破解模式,并能自动修复伪加密文件。凭借其高性能与多功能的特点,ZipCracker已成为CTF比赛中的一把利器。(ZipCracker by Hx0 te…☆12Mar 13, 2026Updated 2 weeks ago
- FofaMap云查询版是基于C/S架构打造的Fofa数据采集器,仅需配置好一个服务端,即可实现多个客户端同时在线查询,其客户端支持FofaMap国庆版全部功能。☆41Feb 27, 2023Updated 3 years ago
- 细雪之舞·刷课神器(SnowbladeDance):一款提升在线学习效率的浏览器插件,一键秒课、倍速播放(支持当前/全部页面)、全局/单页静音、全局/单页暂停、解除复制和右键限制、防止页面挂机超时以及自定义快速导航网址。☆13Sep 19, 2025Updated 6 months ago
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- CNVD-2021-49104——泛微E-Office文件上传漏洞☆22Dec 1, 2021Updated 4 years ago
- 「💥」CVE-2022-26134 - Confluence Pre-Auth RCE☆14Jun 19, 2022Updated 3 years ago
- Hattrick 是一款简单、快速的跨平台网络安全编码转换工具 Hattrick is a network security related code conversion tool.☆19Aug 3, 2020Updated 5 years ago
- An Improved Proof of Concept for CVE-2022-1388 w/ an Interactive Shell☆14May 25, 2025Updated 10 months ago
- CVE-2022-23131漏洞利用工具开箱即用。☆11Apr 2, 2022Updated 3 years ago
- 一个简单的telegram投稿机器人☆11Feb 28, 2024Updated 2 years ago
- 爬取cve/metasplot/exploit-db数据,构建“产品--cve--exp”查询链。☆18Dec 8, 2018Updated 7 years ago
- Homo Network - The best ddos botnet in 2023☆13Apr 27, 2023Updated 2 years ago
- A FullC2 Framework TUI + Web UI That Focuses On Network Stressing☆14Aug 24, 2025Updated 7 months ago
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Hadoop Yan ResourceManager unauthorized RCE☆38Nov 26, 2021Updated 4 years ago
- 一个全场景服务器高危行为监控工具,能实时监控并告警账号活动等风险行为。结合钉钉机器人和星火大模型,该工具可即时通知异常并分析日志,应对系统潜在风险。支持Windows和Linux系统,并提供内网环境下的日志监控功能。☆20Aug 9, 2024Updated last year
- 根据goby查重poc的接口实现,可以当做漏洞库索引,查缺补漏☆13Aug 12, 2022Updated 3 years ago
- 资产发现,控制nmap进行扫描,spring/reactjs 前后端分离项目☆13Apr 9, 2020Updated 5 years ago
- A simple C2 like Slovakia. Based on the Mirai(未来) cnc with ssh.☆12Jan 25, 2022Updated 4 years ago
- 一款内网快速打点的辅助性扫描工具,方便红队人员在内网横向移动前期的信息搜集、漏洞探测利用环节的工作开展。其工具特性主要为支持一键化三个档位的便捷式信息与漏洞扫描或每个功能模块单独式扫描探测功能。☆88Dec 14, 2022Updated 3 years ago
- python编写的多个通达常见漏洞exp☆38Aug 26, 2021Updated 4 years ago
- SentinelaNet é uma CNC (Comando e Controle) em Python, projetada para gerenciar um malware que realiza ataques de disparos em massa (DDoS…☆11Feb 16, 2026Updated last month
- 收集的文章☆38May 1, 2022Updated 3 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- 这是一个构建图形化漏洞利用的项目☆14Apr 27, 2022Updated 3 years ago
- 代码垃圾的缝合怪扫描器☆20May 28, 2021Updated 4 years ago
- 基于网络探测和交换机探测网络,管理IP资产☆13Oct 29, 2020Updated 5 years ago
- 根据IP/Domain批量查询对应归属单位工具☆15Dec 27, 2022Updated 3 years ago
- A Golang Botnet That Focuses On Network Stressing v3☆15Aug 28, 2025Updated 6 months ago
- mozi僵尸网络的模仿实现 a simulating implementation of mozi botNet virus☆16Jul 31, 2022Updated 3 years ago
- 各种用途的字典的收集和整合项目,有用的话麻烦点个Star啦~☆42Nov 11, 2021Updated 4 years ago