jas502n / Redis-RCE
remote code execute for redis4 and redis5
☆81Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for Redis-RCE
- A simple python script to generate XML payloads works for XMLDecoder based on ProcessBuilder and Runtime exec☆149Updated 3 years ago
- Rusty Joomla RCE Exploit☆70Updated last year
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆81Updated 3 years ago
- ☆185Updated 6 months ago
- SpringBoot_Actuator_RCE☆96Updated 4 years ago
- ☆183Updated 3 years ago
- Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()☆79Updated 4 years ago
- GitLab 11.4.7 SSRF配合redis远程执行代码☆123Updated 5 years ago
- Burp extension intended to compact Burp extension tabs by hijacking them to own tab.☆128Updated 3 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆101Updated 4 years ago
- redis ssrf gopher generater & redis ssrf to rce by master-slave-sync☆81Updated 4 years ago
- forked from frohoff/ysoserial and added my own payloads.☆149Updated 4 years ago
- 内网渗透中快速获取数据库所有库名,表名,列名。具体判断后再去翻数据,节省时间。适用于mysql,mssql。☆195Updated 5 years ago
- django 漏洞:CVE-2020-7471 Potential SQL injection via StringAgg(delimiter) 的漏洞环境和 POC☆104Updated 4 years ago
- CNVD-2020-10487(CVE-2020-1938), tomcat ajp 文件读取漏洞poc☆118Updated 4 years ago
- reGeorg的特殊版本,适用于老版本weblogic。☆153Updated 4 years ago
- A BurpSuite extension written by Python,used to find API interface in JS file.☆114Updated last year
- exploit Apache Flink Web Dashboard unauth rce on right way by python2 scripts☆89Updated 5 years ago
- Redis-Rogue-Server Implement☆56Updated 4 years ago
- Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE☆176Updated last year
- Shiro RCE (Padding Oracle Attack)☆142Updated 5 years ago
- Apache Tomcat Remote Code Execution on Windows - CGI-BIN☆76Updated 5 years ago
- https://github.com/GrrrDog/Java-Deserialization-Cheat-Sheet☆49Updated 3 years ago
- ProxyLogon Full Exploit Chain PoC (CVE-2021–26855, CVE-2021–26857, CVE-2021–26858, CVE-2021–27065)☆170Updated 3 years ago
- Exploitation Tool for CVE-2017-3066 targeting Adobe Coldfusion 11/12☆95Updated 2 years ago
- Burp Suite Plugin: Convert the json text that returns the body into HTTP request parameters.☆98Updated 3 years ago
- xxe oob receive file via web and ftp server☆95Updated 4 years ago
- bypass JEP290 RaspHook code☆62Updated 4 years ago