mhaskar / XMLDecoder-payload-generator
A simple python script to generate XML payloads works for XMLDecoder based on ProcessBuilder and Runtime exec
☆148Updated 4 years ago
Alternatives and similar repositories for XMLDecoder-payload-generator:
Users that are interested in XMLDecoder-payload-generator are comparing it to the libraries listed below
- Shiro RCE (Padding Oracle Attack)☆143Updated 5 years ago
- SpringBoot_Actuator_RCE☆97Updated 4 years ago
- A proof-of-concept tool for generating payloads that exploit unsafe Java object deserialization.☆102Updated 4 years ago
- xxe oob receive file via web and ftp server☆96Updated 5 years ago
- ☆77Updated 3 years ago
- CVE-2020-36179~82 Jackson-databind SSRF&RCE☆80Updated 4 years ago
- exploit Apache Flink Web Dashboard unauth rce on right way by python2 scripts☆90Updated 5 years ago
- Rusty Joomla RCE Exploit☆70Updated 2 years ago
- DSO-Lab 漏洞研究成果整理☆82Updated 2 years ago
- WebLogic T3/IIOP RCE ExternalizableHelper.class of coherence.jar☆79Updated 4 years ago
- A BurpSuite extension written by Python,used to find API interface in JS file.☆114Updated last year
- shiro-cve-2020-17523 漏洞的两种绕过姿势分析 以及配套的漏洞环境☆116Updated 4 years ago
- GUI Exploit Tool For RedTeam☆7Updated 3 years ago
- WebLogic EJBTaglibDescriptor XXE漏洞(CVE-2019-2888)☆58Updated 5 years ago
- Shiro_721 exp 纯手工实现Padding Oracle整个过程☆68Updated 5 years ago
- Weblogic Vuln POC EXP cve-2020-2551 cve-2020-2555 cve-2020-2883 ,。。。☆90Updated 2 years ago
- reGeorg的特殊版本,适用于老版本weblogic。☆154Updated 4 years ago
- ☆156Updated 4 years ago
- Weblogic CVE-2019-2725 CVE-2019-2729 Getshell 命令执行☆68Updated 5 years ago
- Weblogic CVE-2020-14645 UniversalExtractor JNDI injection getDatabaseMetaData()☆79Updated 4 years ago
- 用于WebLogic poc及exp测试的基础脚本,后续将集成各版本poc库☆92Updated 4 years ago
- ☆186Updated 10 months ago
- web fuzzing && bug hunter☆60Updated 3 years ago
- Phantom scanner——An interface friendly and lightweight web assets scanner☆65Updated 7 years ago
- burpsuite extension for extract information from data☆86Updated 9 months ago
- 一款高效的参数fuzz工具|A faster param fuzzing test tool☆101Updated 4 years ago
- ☆61Updated 4 years ago
- Weblogic com.tangosol.util.extractor.ReflectionExtractor RCE☆177Updated 2 years ago
- POC of CVE-2021-2394☆40Updated 3 years ago
- Redis RCE 的几种方法☆90Updated 8 months ago