SpringBoot 相关漏洞学习资料,利用方法和技巧合集,黑盒安全评估 checklist
☆30Jun 3, 2020Updated 5 years ago
Alternatives and similar repositories for SpringBootVulExploit
Users that are interested in SpringBootVulExploit are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆11May 22, 2023Updated 2 years ago
- ActiveMQ Deserialization RCE☆15Aug 30, 2019Updated 6 years ago
- Plugin For BurpSuite (Pentester)☆37Nov 22, 2022Updated 3 years ago
- Jboss Java Deserialization RCE (CVE-2017-12149)☆13Aug 22, 2019Updated 6 years ago
- This contains a bundle with an executable to exploit ms17-010 remote or locally. It does not require Python.☆16Jan 10, 2019Updated 7 years ago
- 通达OA<v11.5&v11.6版本RCE Exploit☆26Aug 23, 2020Updated 5 years ago
- ThinkPHP 3.2.X POC Report By 风起☆12Apr 24, 2023Updated 2 years ago
- CVE-2020-8840:FasterXML/jackson-databind 远程代码执行漏洞☆37Feb 24, 2020Updated 6 years ago
- A collection of Cobalt Strike Malleable C2 profiles☆36Oct 13, 2020Updated 5 years ago
- 利用RPC服务,内网批量探测Windows出网☆14Jun 24, 2022Updated 3 years ago
- An execute-assembly compatible tool for spraying local admin hashes on an Active Directory domain.☆18Apr 30, 2021Updated 4 years ago
- Offsec Pentest and Bug Bounty Notes☆24May 28, 2020Updated 5 years ago
- Telegram bot for Fooocus-API☆14Jul 7, 2024Updated last year
- ☆20Aug 19, 2019Updated 6 years ago
- POC for leaking java version through file and ftp protocols☆24Nov 1, 2020Updated 5 years ago
- ☆11Jun 16, 2024Updated last year
- A simple blog site created with NextJs☆10Jun 16, 2022Updated 3 years ago
- [CVE-2020-1948] Apache Dubbo Provider default deserialization cause RCE☆18Mar 17, 2025Updated last year
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆128Mar 2, 2022Updated 4 years ago
- jackson-databind-exploit☆13Mar 22, 2019Updated 7 years ago
- Get the scope of your bugcrowd programs☆67Dec 4, 2020Updated 5 years ago
- ☆17May 28, 2019Updated 6 years ago
- Tools and scripts written for personal use☆12Jan 3, 2021Updated 5 years ago
- React component to pick an appointment☆10Jan 17, 2024Updated 2 years ago
- 禅道8.2 - 9.2.1前台Getshell☆78Sep 19, 2019Updated 6 years ago
- Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()☆80Jul 20, 2020Updated 5 years ago
- CVE-2018-19276 - OpenMRS Insecure Object Deserialization RCE☆16Mar 11, 2019Updated 7 years ago
- Repository of wordlists and dictionaries for fuzzing and bruteforcing☆10Aug 17, 2020Updated 5 years ago
- ☆96May 15, 2020Updated 5 years ago
- POC for XStream RCE☆13Dec 23, 2013Updated 12 years ago
- ☆12Nov 16, 2020Updated 5 years ago
- JWT_Brute☆32Oct 10, 2019Updated 6 years ago
- vBulletin 5.x 未授权远程代码执行漏洞☆21Sep 26, 2019Updated 6 years ago
- nmap默认的scripts和自己收集的一些scripts☆21Feb 22, 2018Updated 8 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Sep 11, 2020Updated 5 years ago
- Exploits for different vulnerabilities☆13Nov 29, 2021Updated 4 years ago
- PoC of CVE-2020-0108☆11Aug 5, 2020Updated 5 years ago
- 用于扫描git,svn泄露☆11Jul 29, 2015Updated 10 years ago
- Spring Data Commons RCE 远程命令执行漏洞☆58Apr 29, 2019Updated 6 years ago