c0ny1 / xxe-labLinks
一个包含php,java,python,C#等各种语言版本的XXE漏洞Demo
☆795Updated 2 years ago
Alternatives and similar repositories for xxe-lab
Users that are interested in xxe-lab are comparing it to the libraries listed below
Sorting:
- 增强版WeblogicScan、检测结果更精确、插件化、添加CVE-2019-2618,CVE-2019-2729检测,Python3支持☆963Updated last year
- 上传漏洞fuzz字典生成脚本☆1,255Updated 4 years ago
- 在渗透测试中快速检测常见中间件、组件的高危漏洞。☆731Updated 3 years ago
- Burpsuite-Plugins-Usage☆516Updated 5 years ago
- XssPayload List . Usage:☆721Updated 5 years ago
- 从wooyun中提取的payload,以及burp插件☆843Updated 3 years ago
- PoCBox - Vulnerability Test Aid Platform☆957Updated last year
- Burp suite 分块传输辅助插件☆1,986Updated 3 years ago
- Burp被动扫描流量转发插件☆1,438Updated last year
- thinkphp v5.x 远程代码执行漏洞-POC集合☆1,148Updated 6 years ago
- 一个各种方式突破Disable_functions达到命令执行的shell☆1,196Updated last year
- MSSQL注入提权,bypass的一些总结☆728Updated 11 months ago
- 360/0Kee-Team/crawlergo动态爬虫结合长亭XRAY扫描器的被动扫描功能☆1,190Updated 3 years ago
- sqlmap4burp++是一款兼容Windows,mac,linux多个系统平台的Burp与sqlmap联动插件☆775Updated 5 years ago
- Shiro<=1.2.4反序列化,一键检测工具☆985Updated 4 years ago
- myscan 被动扫描☆665Updated 4 years ago
- SvnExploit支持SVN源代码泄露全版本Dump源码☆989Updated 2 years ago
- Java反序列化漏洞利用工具V1.0 Java反序列化相关漏洞的检查工具,采用JDK 1.8+NetBeans8.2开发,软件运行必须安装JDK 1.8或者以上版本。 支持:weblogic xml反序列化漏洞 CVE-2017-10271/CNVD-C-2019…☆488Updated 4 years ago
- Collect JSP webshell of various implementation methods. 梳理和发现的JSP Webshell各种姿势☆1,388Updated 3 years ago
- Weblogic环境搭建工具☆795Updated 5 years ago
- bypass disable_functions via LD_PRELOA (no need /usr/sbin/sendmail)☆1,158Updated 3 years ago
- Spring Boot Actuator未授权访问【XXE、RCE】单/多目标检测☆517Updated 5 years ago
- PC客户端(C-S架构)渗透测试checklist / Client side(C-S) penetration checklist☆665Updated 4 years ago
- Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)☆1,338Updated 2 years ago
- Code-Audit-Challenges☆981Updated 6 years ago
- Apache Shiro 反序列化漏洞检测与利用工具☆550Updated 5 years ago
- 一个简单的Fastjson反序列化检测burp插件☆927Updated 4 years ago
- 一款基于BurpSuite的被动式shiro检测插件☆1,746Updated 2 years ago
- 代码审计相关的一些知识☆419Updated 11 months ago
- Unexpected information 是用于标记请求包中的一些敏感信息、JS接口和一些特殊字段的BurpSuite 插件。☆658Updated 4 years ago