kh4sh3i / Spring-CVELinks
This includes CVE-2022-22963, a Spring SpEL / Expression Resource Access Vulnerability, as well as CVE-2022-22965, the spring-webmvc/spring-webflux RCE termed "SpringShell".
☆14Updated 3 years ago
Alternatives and similar repositories for Spring-CVE
Users that are interested in Spring-CVE are comparing it to the libraries listed below
Sorting:
- 基于BurpCollector的二次开发, 记录Burpsuite Site Map记录的里的数据包中的目录路径参数名信息,并存入Sqlite,并可导出txt文件。☆24Updated 6 years ago
- Burpsuite Plugin For AES Crack☆37Updated 5 years ago
- IDOR bypass fuzz 权限 绕过burp 插件 fuzz (shiro 等)☆27Updated 4 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆63Updated 7 years ago
- some goby poc☆15Updated 4 years ago
- JNDI注入测试工具改版(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,et…☆49Updated 5 years ago
- CVE-2019-0230 & s2-059 poc.☆36Updated 5 years ago
- web fuzzing && bug hunter☆61Updated 4 years ago
- common methods that used by my burp extension projects☆52Updated last year
- 轻量级漏洞验证和利用框架☆32Updated 3 years ago
- F5 BIG-IP RCE CVE-2020-5902 automatic check tool☆62Updated 5 years ago
- Detect burp☆33Updated 4 years ago
- A cdn detector with high speed! 基于Python 多线程+多协程实现高并发查询API接口进行多地Ping Host来确认IP的真实归属。☆26Updated 4 years ago
- 分支出了些问题,无法合并到main,迁移至https://github.com/hktalent/scan4all☆17Updated 2 years ago
- Citrix ADC从权限绕过到RCE☆45Updated 5 years ago
- VMware vCenter 未授权RCE(CVE-2021-21972)☆28Updated 4 years ago
- ☆14Updated 5 years ago
- AWVS12&AWVS13 通用API批量导入脚本 AWVS12 & AWVS13 common API batch import script.☆25Updated 3 years ago
- Plugin For BurpSuite (Pentester)☆36Updated 3 years ago
- 以子域名作为基础数据进行分析出关键词,然后基于FoFa、Shodan、Zoomye网络引擎的多维度资产探测脚本☆21Updated 4 years ago
- A Safer PoC for CVE-2022-22965 (Spring4Shell)☆44Updated 3 years ago
- Burp Extension in Python hilighting DOM Sinks and Hosts using DOM XSS Wiki regex☆24Updated 12 years ago
- WebLogic T3/IIOP RCE ExternalizableHelper.class of coherence.jar☆80Updated 5 years ago
- Weblogic RCE with IIOP☆80Updated 6 years ago
- XSTREAM<=1.4.17漏洞复现(CVE-2021-39141、CVE-2021-39144、CVE-2021-39150)☆62Updated 4 years ago
- 通过Web获取访客机器的hostname字段内容。☆65Updated 4 years ago
- The burp extension to forward the request☆10Updated last year
- CVE-2019-2890 WebLogic 反序列化RCE漏洞☆44Updated 6 years ago
- A Zhiyuan OA Collaborative Office Remote Code Execution Vulnerability on Windows☆37Updated 6 years ago
- CVE-2019-16759 vbulletin 5.0.0 till 5.5.4 pre-auth rce☆20Updated 5 years ago