pwntester / JRE8u20_RCE_Gadget
JRE8u20_RCE_Gadget
☆251Updated 8 years ago
Alternatives and similar repositories for JRE8u20_RCE_Gadget:
Users that are interested in JRE8u20_RCE_Gadget are comparing it to the libraries listed below
- RCE on Apache Solr using deserialization of untrusted data via jmx.serviceUrl☆209Updated 6 years ago
- Collection of bypass gadgets to extend and wrap ysoserial payloads☆351Updated 2 years ago
- CVE-2018-3245-PoC☆167Updated 3 years ago
- 🐱💻 Poc of CVE-2019-7238 - Nexus Repository Manager 3 Remote Code Execution 🐱💻☆150Updated 6 years ago
- A vulnerable application exposing Spring Boot Actuators☆121Updated 6 years ago
- ☆143Updated 6 years ago
- CVE-2019-3396 confluence SSTI RCE☆174Updated 4 years ago
- fastjson-1.2.47☆66Updated 5 years ago
- Proof of concept exploit, showing how to do bytecode injection through untrusted deserialization with Spring Framework 4.2.4☆116Updated 5 years ago
- ☆131Updated 2 years ago
- SerialWriter is an incomplete implementation of Java serialization for study of Java deserialization vulnerabilities.☆104Updated 7 years ago
- Weblogic coherence.jar RCE☆176Updated 4 years ago
- Mogwai Java Management Extensions (JMX) Exploitation Toolkit☆173Updated 8 years ago
- ssrf、ssrfIntranetFuzz、dnsRebinding、recordEncode、dnsPoisoning、Support ipv4/ipv6☆217Updated 7 years ago
- ☆1Updated 3 years ago
- procfs-based PHP sandbox bypass☆133Updated 6 years ago
- poison and relay NTLM credentials☆174Updated 6 years ago
- MySQL JDBC Deserialization Payload / MySQL客户端jdbc反序列化漏洞payload☆13Updated 5 years ago
- weblogic t3 deserialization rce☆268Updated 7 years ago
- CVE-2018-2894 WebLogic Unrestricted File Upload Lead To RCE Check Script☆137Updated 6 years ago
- Redis 4.x & 5.x RCE☆140Updated 5 years ago
- Some codes for bypassing Oracle WebLogic CVE-2018-2628 patch☆114Updated 6 years ago
- forked from frohoff/ysoserial and added my own payloads.☆151Updated 5 years ago
- Apache Solr RCE (ENABLE_REMOTE_JMX_OPTS="true")☆101Updated 5 years ago
- WebLogic wls9-async反序列化远程命令执行漏洞☆241Updated 5 years ago
- CVE-2018-2893-PoC☆103Updated 6 years ago
- A JSP backdoor that enables under Tomcat hiding arbitrary JSP files, in addition to their access logs.☆214Updated 5 years ago
- Native Java-based deserialization exploit for WebLogic T3 (and T3S) listeners.☆35Updated 5 years ago
- Slides/Demos from the BSides Munich 2019 talk "Attacking Java RMI in 2019"☆101Updated 5 years ago
- A command-line fuzzer for the Apache JServ Protocol (ajp13)☆93Updated 2 years ago