kh4sh3i / Spring-CVELinks
This includes CVE-2022-22963, a Spring SpEL / Expression Resource Access Vulnerability, as well as CVE-2022-22965, the spring-webmvc/spring-webflux RCE termed "SpringShell".
☆14Updated 3 years ago
Alternatives and similar repositories for Spring-CVE
Users that are interested in Spring-CVE are comparing it to the libraries listed below
Sorting:
- 基于BurpCollector的二次开发, 记录Burpsuite Site Map记录的里的数据包中的目录路径参数名信息,并存入Sqlite,并可导出txt文件。☆24Updated 6 years ago
- F5 BIG-IP RCE CVE-2020-5902 automatic check tool☆62Updated 5 years ago
- The burp extension to forward the request☆10Updated last year
- Burpsuite Plugin For AES Crack☆37Updated 5 years ago
- burpsuite 插件对GP所有参数(过滤特殊参数)一键自动添加xss sql payload 进行fuzz☆63Updated 7 years ago
- IDOR bypass fuzz 权限绕过burp 插件 fuzz (shiro 等)☆27Updated 4 years ago
- common methods that used by my burp extension projects☆52Updated last year
- CVE-2019-16759 vbulletin 5.0.0 till 5.5.4 pre-auth rce☆20Updated 5 years ago
- web fuzzing && bug hunter☆61Updated 4 years ago
- Plugin For BurpSuite (Pentester)☆36Updated 3 years ago
- some goby poc☆15Updated 4 years ago
- Citrix ADC从权限绕过到RCE☆45Updated 5 years ago
- 轻量级漏洞验证和利用框架☆32Updated 3 years ago
- CVE-2019-0230 & s2-059 poc.☆36Updated 5 years ago
- JNDI注入测试工具改版(A tool which generates JNDI links can start several servers to exploit JNDI Injection vulnerability,like Jackson,Fastjson,et…☆49Updated 5 years ago
- a Burp Extender that add an random X-Forward-For IP address for each request☆31Updated 9 years ago
- A cdn detector with high speed! 基于Python 多线程+多协程实现高并发查询API接口进行多地Ping Host来确认IP的真实归属。☆25Updated 3 years ago
- java UI 插件化漏洞扫描工具☆18Updated 5 years ago
- A Safer PoC for CVE-2022-22965 (Spring4Shell)☆44Updated 3 years ago
- VMware vCenter 未授权RCE(CVE-2021-21972)☆28Updated 4 years ago
- 分支出了些问题,无法合并到main,迁移至https://github.com/hktalent/scan4all☆17Updated 2 years ago
- 利用xray高级版批量收集子域名☆18Updated 5 years ago
- CVE-2020-9548:FasterXML/jackson-databind 远程代码执行漏洞☆24Updated 5 years ago
- 扫描常见未授权访问(改)(redis、mongodb、memcached、elasticsearch、zookeeper、ftp、CouchDB、docker、Hadoop)☆15Updated 5 years ago
- My collection of various of JSP Webshell.☆37Updated 3 years ago
- Microsoft Exchange Server SSRF漏洞(CVE-2021-26855)☆36Updated 4 years ago
- 通过Web获取访客机器的hostname字段内容。☆65Updated 4 years ago
- Burp Extension in Python hilighting DOM Sinks and Hosts using DOM XSS Wiki regex☆24Updated 12 years ago
- CVE-2019-2729 Exploit Script☆46Updated 5 years ago
- CVE-2020-5902☆10Updated 5 years ago