immunio / apache-struts2-CVE-2017-5638Links
Demo Application and Exploit
☆35Updated 8 years ago
Alternatives and similar repositories for apache-struts2-CVE-2017-5638
Users that are interested in apache-struts2-CVE-2017-5638 are comparing it to the libraries listed below
Sorting:
- Payload generator for Java Binary Deserialization attack with Commons FileUpload (CVE-2013-2186)☆38Updated 9 years ago
- XXE OOB Exploitation Toolset for Automation☆63Updated 12 years ago
- ☆24Updated 10 years ago
- Simple socket-based gateway to the Burp Collaborator☆34Updated 9 years ago
- ☆23Updated 10 years ago
- Burp plugin to do random fuzzing of HTTP requests☆33Updated 8 years ago
- Python Implementation of a .NET Padding Oracle Assessment Tool☆31Updated 10 years ago
- Penetration Testing Tools Developed by AppSec Consulting.☆48Updated 7 years ago
- Spray SMB with hashes, Then psexec☆32Updated 6 years ago
- Image size issues plugin for Burp Suite☆95Updated 7 years ago
- An adaptive, intelligent XSS fuzzer that learns how the response is reflected and carefully crafts an XSS payload to match☆42Updated 13 years ago
- A tool to analyse JMX API security level.☆43Updated 11 years ago
- A BurpSuite plugin to detect Same Origin Method Execution vulnerabilities☆60Updated 8 years ago
- DoS PoC's for SAP products☆51Updated 7 years ago
- Study about HQL injection exploitation.☆51Updated 9 years ago
- cve-2014-0130 rails directory traversal vuln☆19Updated 8 years ago
- PHDAYS |||☆17Updated 12 years ago
- ☆86Updated 8 years ago
- ActionScript Proof of Concept to perform cross-domain reads☆16Updated 12 years ago
- Axis2 RPC Shell☆15Updated 10 years ago
- Java Untrusted Deserialization Exploits Tools☆67Updated 10 years ago
- Tests for different parsers from Ruby, Python, .NET, PHP, Perl, Java☆55Updated 9 years ago
- Customize Exploit Codes.☆18Updated 9 years ago
- Python Scanner for "ShellShock" (CVE-2014-6271)☆45Updated 11 years ago
- Generates Flash based CORS CSRF Proof of Concepts that can be sent directly to clients☆14Updated 12 years ago
- A collection of published exploits and proof-of-concept code.☆21Updated 8 years ago
- Burp Suite plugin which implement PyJFuzz for fuzzing web application.☆56Updated 8 years ago
- Burp extension to help developers replicate findings from pen tests☆70Updated last year
- Wraps sudo; transparently steals user's credentials. For those annoying times when you get a shell/file write on a sudoers account and ne…☆35Updated last year
- Demonstrating why Dynamic Method Invocation with unrestricted method names (the old default of Struts) is dangerous.☆12Updated 7 years ago