bigsizeme / burplugin-java-rce
******本软件仅限用于学习交流禁止用于任何非法行为****** 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、struts2-009、struts2-013、struts2-016、struts2-019、struts2-020、struts2-devmode、 struts2-032、struts2-033、struts2-037、struts2-045、struts2-048、struts2-052 除struts2-053全部RCE漏洞验证并支持批量验证。 Struts2漏洞验证需要python环境并需要相关类库支持.点击python按钮初始化初始化python…
☆110Updated 7 years ago
Alternatives and similar repositories for burplugin-java-rce:
Users that are interested in burplugin-java-rce are comparing it to the libraries listed below
- weblogic绕过和wls远程执行☆36Updated 5 years ago
- 又一个Java Web代码审计工具☆99Updated 6 years ago
- A js infomation dig tool.☆69Updated 4 years ago
- Confluence 未授权 RCE (CVE-2019-3396) 漏洞☆144Updated 5 years ago
- 开启WeblogicScanV3.*系列,采用Server部署,支持远程Weblogic漏洞扫描☆55Updated 4 years ago
- Apache Shiro Java Analysis and Utilization of Deserialization Vulnerabilities☆41Updated 4 years ago
- WeblogicScanLot系列,Weblogic漏洞批量检测工具,V2.2☆183Updated 4 years ago
- Remote Command Execution Over Spark☆95Updated 7 years ago
- discuz ml rce☆55Updated 3 years ago
- 记录个人XSS学习☆105Updated 4 years ago
- 帮助java环境下任意文件下载情况自动化读取源码的小工具☆165Updated 5 years ago
- 提供Weblogic批量模糊指纹识别☆59Updated 5 years ago
- Struts2 历史版本的漏洞环境☆83Updated 8 years ago
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- 基于HTTP代理中转菜刀过WAF☆64Updated 5 years ago
- docker 未授权访问漏洞利用脚本☆141Updated 8 years ago
- 子域名后续的信息收集工具☆29Updated 4 years ago
- ueditor .net getshell☆95Updated 6 years ago
- Shiro RCE (Padding Oracle Attack)☆143Updated 5 years ago
- Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch☆114Updated 6 years ago
- a burp extension to find where use fastjson☆165Updated 4 years ago
- 配合reGeorg使用的内网扫描工具☆62Updated 8 years ago
- sqlmap_api_demo☆24Updated 5 years ago
- a AWVS12 api tool☆121Updated 4 years ago
- cve2019_2725、CNVD-C-2019-48814 Weblogic _async remote command execution exp☆48Updated 4 years ago
- Reference:https://www.w2n1ck.com/article/44/☆152Updated 4 years ago
- DSO-Lab 漏洞研究成果整理☆82Updated 2 years ago
- Fake框架的自动化Fuzz WAF/IDS 功能☆85Updated 5 years ago
- 可以直接反弹shell☆47Updated last year
- WebLogic EJBTaglibDescriptor XXE漏洞(CVE-2019-2888)☆58Updated 5 years ago