bigsizeme / burplugin-java-rce
******本软件仅限用于学习交流禁止用于任何非法行为****** 本版本支持elasticsearch java语言远程命令执行及文件上传 elasticsearchgroov语言远程命令执行及文件上传 struts2-005、struts2-009、struts2-013、struts2-016、struts2-019、struts2-020、struts2-devmode、 struts2-032、struts2-033、struts2-037、struts2-045、struts2-048、struts2-052 除struts2-053全部RCE漏洞验证并支持批量验证。 Struts2漏洞验证需要python环境并需要相关类库支持.点击python按钮初始化初始化python…
☆111Updated 7 years ago
Alternatives and similar repositories for burplugin-java-rce:
Users that are interested in burplugin-java-rce are comparing it to the libraries listed below
- weblogic绕过和wls远程执行☆36Updated 5 years ago
- A js infomation dig tool.☆69Updated 4 years ago
- Weblogic Upload Vuln(Need username password)-CVE-2019-2618☆172Updated 5 years ago
- WeblogicScanLot系列,Weblogic漏洞批量检测工具,V2.2☆183Updated 4 years ago
- Confluence 未授权 RCE (CVE-2019-3396) 漏洞☆144Updated 5 years ago
- 开启WeblogicScanV3.*系列,采用Server部署,支持远程Weblogic漏洞扫描☆55Updated 4 years ago
- 又一个Java Web代码审计工具☆99Updated 6 years ago
- Apache Shiro Java Analysis and Utilization of Deserialization Vulnerabilities☆41Updated 4 years ago
- 基于HTTP代理中转菜刀过WAF☆64Updated 5 years ago
- 提供Weblogic批量模糊指纹识别☆59Updated 5 years ago
- 记录个人XSS学习☆105Updated 4 years ago
- Reference:https://www.w2n1ck.com/article/44/☆153Updated 5 years ago
- Remote Command Execution Over Spark☆96Updated 7 years ago
- Shiro RCE (Padding Oracle Attack)☆142Updated 5 years ago
- Fake框架的自动化Fuzz WAF/IDS 功能☆85Updated 5 years ago
- Search Assistant: Searching shodan via API.☆66Updated 6 years ago
- ueditor .net getshell☆95Updated 6 years ago
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- 帮助java环境下任意文件下载情况自动化读取源码的小工具☆165Updated 5 years ago
- A Burp-Extension can hunt some keywords that might leak sensitive information.☆26Updated 5 years ago
- Shiro RememberMe 1.2.4 反序列化 漏洞☆53Updated 5 years ago
- 配合reGeorg使用的内网扫描工具☆62Updated 8 years ago
- Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch☆114Updated 6 years ago
- a burp extension to find where use fastjson☆163Updated 4 years ago
- CNVD-C-2019-48814 Weblogic wls9_async_response 反序列化利用工具☆37Updated 5 years ago
- 前渗透信息探测工具集-子域名☆137Updated 7 years ago
- docker 未授权访问漏洞利用脚本☆140Updated 8 years ago
- ☆288Updated 5 years ago
- 整理的2019年厂商发布的漏洞预警公开POC集合,不足之处还希望多多补充,完善☆112Updated 5 years ago
- a AWVS12 api tool☆121Updated 4 years ago