chipik / SAP_RECON
PoC for CVE-2020-6287, CVE-2020-6286 (SAP RECON vulnerability)
☆215Updated 4 years ago
Alternatives and similar repositories for SAP_RECON:
Users that are interested in SAP_RECON are comparing it to the libraries listed below
- ☆281Updated 3 years ago
- SAP Gateway RCE exploits☆151Updated 4 years ago
- CVE-2018-13379☆253Updated 5 years ago
- SQL Server Reporting Services(CVE-2020-0618)中的RCE☆198Updated 5 years ago
- ☆127Updated 3 years ago
- ☆116Updated 4 years ago
- Exfiltrate blind Remote Code Execution and SQL injection output over DNS via Burp Collaborator.☆266Updated 3 weeks ago
- PoC for CVE-2020-6207 (Missing Authentication Check in SAP Solution Manager)☆81Updated 4 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆176Updated 4 years ago
- cve-2020-0688☆323Updated last year
- Everything you need about Burp Extension Generation☆152Updated 2 years ago
- Proof of concept for CVE-2020-5902☆72Updated 4 years ago
- Exploitation toolkit for RichFaces☆103Updated last year
- CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit☆156Updated 4 years ago
- List of configuration files from WEB-INF and META-INF for use in Unvalidated Forwards and JSP Include vulnerabilities.☆82Updated 6 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆107Updated 4 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆104Updated 5 years ago
- ☆128Updated 6 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- Here you can get full exploit for SAP NetWeaver AS JAVA☆75Updated 7 years ago
- Scan Victim Backup Directories & Backup Files☆178Updated last year
- A Burp extension for generic extraction and reuse of data within HTTP requests and responses.☆91Updated 3 years ago
- MOGWAI LABS JMX exploitation toolkit☆200Updated last year
- ☆147Updated 3 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- Java serialization brute force attack tool.☆123Updated 7 years ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆258Updated 3 years ago
- ☆206Updated 3 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆256Updated 2 years ago
- Data extraction tool for Docker Registry API☆125Updated last year