泛微ecology OA系统接口存在数据库配置信息泄露漏洞
☆50Jul 13, 2020Updated 5 years ago
Alternatives and similar repositories for DBconfigReader
Users that are interested in DBconfigReader are comparing it to the libraries listed below
Sorting:
- ThinkCMF 框架上的任意内容包含漏洞☆36Oct 28, 2019Updated 6 years ago
- webuploader-v-0.1.15未授权-任意文件上传☆52Sep 6, 2019Updated 6 years ago
- phpweb 前台任意文件上传☆16Jan 9, 2020Updated 6 years ago
- CVE-2019-2890 WebLogic 反序列化RCE漏洞☆44Dec 8, 2019Updated 6 years ago
- Thinkphp rce扫描脚本,附带日志扫描☆242Jun 19, 2020Updated 5 years ago
- Jboss_JMXInvokerServlet_Deserialization_RCE☆21Sep 3, 2019Updated 6 years ago
- 未授权批量检测脚本☆14Oct 9, 2019Updated 6 years ago
- HackerOne Staffs☆29Dec 9, 2019Updated 6 years ago
- More Easier Burp Extension To Solve Javascript Front End Encryption,一款更易使用的解决前端加密问题的Burp插件。☆46Apr 15, 2020Updated 5 years ago
- java web 压缩文件 安全 漏洞☆20Mar 17, 2020Updated 6 years ago
- JCE - JSP/JPSX CodeEncode - 用于 Webshell 逃避静态查杀的辅助脚本☆258Oct 29, 2021Updated 4 years ago
- 禅道8.2 - 9.2.1前台Getshell☆78Sep 19, 2019Updated 6 years ago
- CVE-2020-10199、CVE-2020-10204、CVE-2020-11444☆35Apr 9, 2020Updated 5 years ago
- 泛微OA e-cology rce批量检测工具☆32Sep 25, 2019Updated 6 years ago
- Java层frida hook学习笔记 https://uknowsec.cn☆47Feb 6, 2020Updated 6 years ago
- POC-T强化版本 POC-S , 用于红蓝对抗中快速验证Web应用漏洞, 对功能进行强化以及脚本进行分类添加,自带dnslog等, 平台补充来自vulhub靶机及其他开源项目的高可用POC☆357Mar 12, 2020Updated 6 years ago
- 一个Mac下信息搜集小脚本 主要用于信息搜集/应急响应/检测挖矿进程/异常进程/异常启动项☆78Jul 21, 2020Updated 5 years ago
- Weblogic IIOP CVE-2020-2551☆338Apr 7, 2020Updated 5 years ago
- 在渗透测试中快速检测常见中间件、组件的高危漏洞。☆728Mar 21, 2022Updated 4 years ago
- 内网渗透中常用的c#程序整合成cs脚本,直接内存加载。持续更新~☆499Feb 13, 2020Updated 6 years ago
- 一款用于攻击spring boot actuator的集成环境,目前集成三种攻击方式,支持1.x、2.x☆86Jul 26, 2021Updated 4 years ago
- 创建一个克隆隐藏的管理员账号/Create a Clone Hidden Administrator Account☆22Aug 28, 2019Updated 6 years ago
- phpMyAdmin爆破☆14Sep 17, 2020Updated 5 years ago
- 修改的SweetPotato,使之可以用于CobaltStrike v4.0☆246Apr 30, 2020Updated 5 years ago
- burpplugin 根据一遍神贴,实现了一下burp插件版本的小刀,一键生成shell☆14Jul 15, 2019Updated 6 years ago
- Cobra-W -> Cobra-RE 将进一步提升漏洞发现的准确性并降低漏报率(弃坑了)☆16Aug 15, 2020Updated 5 years ago
- xray社区高级版证书生成,仅供学习研究,正常使用请支持正版。removed due to Chaitin requirements & support to version 1.4.4 & learning purpose☆444Nov 11, 2020Updated 5 years ago
- 收集目标主机信息,包括最近打开文件,系统环境变量和回收站文件等等☆115Oct 30, 2019Updated 6 years ago
- kibana < 6.6.0 未授权远程代码命令执行 (Need Timelion And Canvas),CVE-2019-7609☆89Oct 22, 2019Updated 6 years ago
- Cobalt Strike teamserver detection.☆16Apr 26, 2021Updated 4 years ago
- 帮助java环境下任意文件下载情况自动化读取源码的小工具☆166Apr 5, 2019Updated 6 years ago
- CVE-2020-10199 Nexus <= 3.21.1 远程代码执行脚本(有回显)☆43May 26, 2020Updated 5 years ago
- X安蜜罐用的一些存在JSonp劫持的API☆93May 28, 2021Updated 4 years ago
- 通过burp代理流量寻找shiro站点☆60Jun 11, 2020Updated 5 years ago
- fastjson 1.2.68 版本 autotype bypass☆142Jun 17, 2022Updated 3 years ago
- 整理收集Struts2漏洞环境☆270Jan 9, 2018Updated 8 years ago
- Apache Shiro Java Analysis and Utilization of Deserialization Vulnerabilities☆41Jun 28, 2020Updated 5 years ago
- webshell下提权执行命令 Reference//github.com/yusufqk/SystemToken☆205Apr 22, 2020Updated 5 years ago
- WINDOWS TELEMETRY权限维持☆258Jul 2, 2020Updated 5 years ago