bigsizeme / burplugin-java-rce
******本软件仅限用于学习交流禁止用于任何非法行为****** 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、struts2-009、struts2-013、struts2-016、struts2-019、struts2-020、struts2-devmode、 struts2-032、struts2-033、struts2-037、struts2-045、struts2-048、struts2-052 除struts2-053全部RCE漏洞验证并支持批量验证。 Struts2漏洞验证需要python环境并需要相关类库支持.点击python按钮初始化初始化python…
☆111Updated 7 years ago
Alternatives and similar repositories for burplugin-java-rce:
Users that are interested in burplugin-java-rce are comparing it to the libraries listed below
- Confluence 未授权 RCE (CVE-2019-3396) 漏洞☆144Updated 5 years ago
- weblogic绕过和wls远程执行☆36Updated 5 years ago
- 开启WeblogicScanV3.*系列,采用Server部署,支持远程Weblogic漏洞扫描☆55Updated 4 years ago
- A js infomation dig tool.☆69Updated 4 years ago
- 又一个Java Web代码审计工具☆99Updated 6 years ago
- Shiro RCE (Padding Oracle Attack)☆143Updated 5 years ago
- Apache Shiro Java Analysis and Utilization of Deserialization Vulnerabilities☆41Updated 4 years ago
- 帮助java环境下任意文件下载情况自动化读取源码的小工具☆166Updated 6 years ago
- WeblogicScanLot系列,Weblogic漏洞批量检测工具,V2.2☆183Updated 4 years ago
- ueditor .net getshell☆96Updated 6 years ago
- 基于HTTP代理中转菜刀过WAF☆64Updated 5 years ago
- Struts2 历史版本的漏洞环境☆83Updated 8 years ago
- A Burp-Extension can hunt some keywords that might leak sensitive information.☆26Updated 5 years ago
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- discuz ml rce☆55Updated 3 years ago
- cve2019_2725、CNVD-C-2019-48814 Weblogic _async remote command execution exp☆48Updated 5 years ago
- sqlmap_api_demo☆24Updated 5 years ago
- ☆49Updated 10 years ago
- 提供Weblogic批量模糊指纹识别☆59Updated 5 years ago
- Remote Command Execution Over Spark☆96Updated 7 years ago
- 配合reGeorg使用的内网扫描工具☆62Updated 8 years ago
- SpringBoot_Actuator_RCE☆96Updated 4 years ago
- Search Assistant: Searching shodan via API.☆66Updated 6 years ago
- a burp extension to find where use fastjson☆163Updated 5 years ago
- 前渗透信息探测工具集-子域名☆137Updated 7 years ago
- Reference:https://www.w2n1ck.com/article/44/☆153Updated 5 years ago
- 记录个人XSS学习☆105Updated 4 years ago
- 整理的2019年厂商发布的漏洞预警公开POC集合,不足之处还希望多多补充,完善☆112Updated 5 years ago
- Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch☆114Updated 6 years ago
- 子域名后续的信息收集工具☆29Updated 5 years ago