Skip to content

Commit 18d6ebc

Browse files
author
superman
committed
Weblogic漏洞利用工具
1 parent 22a37d9 commit 18d6ebc

File tree

86 files changed

+154
-1
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

86 files changed

+154
-1
lines changed

src/main/java/superman/core/Store.java

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@
66
import java.util.Map;
77

88
public class Store {
9-
public static long TIME_OUT=5000L;
9+
public static long TIME_OUT=15000L;
1010
public static EchoVul ECHO_VUL =null;
1111
public static NoEchoVul NO_ECHO_VUL =null;
1212

target/classes/superman/App.class

474 Bytes
Binary file not shown.

target/classes/superman/Test.class

861 Bytes
Binary file not shown.
268 Bytes
Binary file not shown.
1.57 KB
Binary file not shown.
Binary file not shown.
Binary file not shown.
1.18 KB
Binary file not shown.
Binary file not shown.
7.12 KB
Binary file not shown.
1.6 KB
Binary file not shown.
2.12 KB
Binary file not shown.
2.42 KB
Binary file not shown.
4.39 KB
Binary file not shown.
2.04 KB
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
325 Bytes
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
1.93 KB
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
2.92 KB
Binary file not shown.
Binary file not shown.
718 Bytes
Binary file not shown.
717 Bytes
Binary file not shown.
721 Bytes
Binary file not shown.
6.59 KB
Binary file not shown.
2.25 KB
Binary file not shown.
2.32 KB
Binary file not shown.
438 Bytes
Binary file not shown.
Binary file not shown.
8.29 KB
Binary file not shown.
875 Bytes
Binary file not shown.
621 Bytes
Binary file not shown.
6.81 KB
Binary file not shown.
1.48 KB
Binary file not shown.
3.99 KB
Binary file not shown.
1.43 KB
Binary file not shown.
1008 Bytes
Binary file not shown.
1.09 KB
Binary file not shown.
1.09 KB
Binary file not shown.
713 Bytes
Binary file not shown.
877 Bytes
Binary file not shown.
939 Bytes
Binary file not shown.
878 Bytes
Binary file not shown.
Binary file not shown.
877 Bytes
Binary file not shown.
939 Bytes
Binary file not shown.
7.63 KB
Binary file not shown.
894 Bytes
Binary file not shown.
894 Bytes
Binary file not shown.
963 Bytes
Binary file not shown.
Binary file not shown.
8.68 KB
Binary file not shown.
323 Bytes
Binary file not shown.
2.59 KB
Binary file not shown.
229 Bytes
Binary file not shown.
2.96 KB
Binary file not shown.
Binary file not shown.

target/maven-archiver/pom.properties

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,5 @@
1+
#Generated by Maven
2+
#Thu Jul 16 16:18:28 CST 2020
3+
version=1.0-SNAPSHOT
4+
groupId=superman
5+
artifactId=weblogic_exploit
Lines changed: 77 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,77 @@
1+
superman/util/Reflections.class
2+
superman/vuls/CVE_2018_2894.class
3+
superman/vuls/CVE_2018_3245.class
4+
superman/util/HttpClient.class
5+
superman/util/Gadgets.class
6+
superman/payloads/UnitOfWorkChangeSet2729.class
7+
superman/core/DnslogClient.class
8+
superman/vuls/CVE_2017_3248.class
9+
superman/payloads/JRMPClient1.class
10+
superman/util/HttpClient$1.class
11+
superman/ui/MainForm$1.class
12+
superman/vuls/NoEchoVul.class
13+
superman/util/ClassFiles.class
14+
superman/shells/HttpEchoShell.class
15+
superman/vuls/CVE_2015_4852.class
16+
superman/payloads/CommonsCollections7.class
17+
superman/shells/T3OrIIOPShell.class
18+
superman/core/PayloadSend.class
19+
superman/vuls/CVE_2017_10271.class
20+
superman/core/Const.class
21+
superman/vuls/CVE_2019_2725.class
22+
superman/util/Gadgets$StubTransletPayload.class
23+
superman/payloads/StreamMessageImplEcho.class
24+
superman/payloads/CoherenceEcho.class
25+
superman/vuls/CVE_2018_3191.class
26+
superman/ui/MainForm$2.class
27+
superman/core/JNDIShellClient.class
28+
superman/payloads/XmlEchoPayload.class
29+
superman/core/PayloadSend$TrustManagerImpl.class
30+
superman/core/VulExec.class
31+
superman/payloads/JRMPClient2.class
32+
superman/payloads/NoEchoPayload.class
33+
superman/core/Log.class
34+
superman/vuls/EchoVulImpl.class
35+
superman/App.class
36+
superman/util/ByteUtil.class
37+
superman/vuls/CVE_2016_0638.class
38+
superman/vuls/XmlDeserailVul.class
39+
superman/payloads/JRMPClient3.class
40+
superman/core/Store.class
41+
superman/shells/HttpShell.class
42+
superman/util/HttpResult.class
43+
superman/core/Url.class
44+
superman/payloads/SpringJndi.class
45+
superman/shells/HttpEchoShell12.class
46+
superman/util/Serializer.class
47+
superman/payloads/JRMPClient5.class
48+
superman/util/HttpClient$2.class
49+
superman/payloads/CommonsCollections1.class
50+
superman/Test.class
51+
superman/payloads/JRMPClient4.class
52+
superman/vuls/CVE_2016_3510.class
53+
superman/payloads/UnitOfWorkChangeSet2725.class
54+
superman/vuls/CVE_2020_2551.class
55+
superman/payloads/MarshalledObjectEcho.class
56+
superman/payloads/Jdk7u21.class
57+
superman/vuls/CVE_2018_2628.class
58+
superman/vuls/CVE_2018_2893.class
59+
superman/payloads/EventData2725.class
60+
superman/vuls/NoEchoVulImpl.class
61+
superman/ui/MainForm$3.class
62+
superman/ui/MainForm.class
63+
superman/payloads/CommonsCollections3.class
64+
superman/core/HttpShellClient.class
65+
superman/util/Gadgets$Foo.class
66+
superman/core/VulCheck.class
67+
superman/core/ShellUpload.class
68+
superman/vuls/CVE_2020_2555.class
69+
superman/vuls/EchoVul.class
70+
superman/vuls/CVE_2018_3252.class
71+
superman/payloads/JRMPClient.class
72+
superman/payloads/Payload10271.class
73+
superman/payloads/CommonsCollections2.class
74+
superman/vuls/CVE_2020_2551_NOECHO.class
75+
superman/payloads/EventData2729.class
76+
superman/payloads/EchoPayload.class
77+
superman/vuls/CVE_2019_2729.class
Lines changed: 69 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,69 @@
1+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_2893.java
2+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/Url.java
3+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/HttpResult.java
4+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2015_4852.java
5+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/CommonsCollections7.java
6+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/CommonsCollections1.java
7+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/NoEchoVul.java
8+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/Serializer.java
9+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/Log.java
10+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/CommonsCollections2.java
11+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/Reflections.java
12+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_2894.java
13+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient5.java
14+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2020_2551.java
15+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/Jdk7u21.java
16+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient2.java
17+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/UnitOfWorkChangeSet2725.java
18+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/EchoPayload.java
19+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/ui/MainForm.java
20+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/XmlEchoPayload.java
21+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/VulExec.java
22+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/MarshalledObjectEcho.java
23+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient4.java
24+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/HttpClient.java
25+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2017_10271.java
26+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient1.java
27+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/Store.java
28+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2019_2725.java
29+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2019_2729.java
30+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient.java
31+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/CoherenceEcho.java
32+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_3252.java
33+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/UnitOfWorkChangeSet2729.java
34+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/EchoVulImpl.java
35+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2020_2551_NOECHO.java
36+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/Payload10271.java
37+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2016_0638.java
38+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/shells/T3OrIIOPShell.java
39+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/VulCheck.java
40+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/NoEchoPayload.java
41+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/DnslogClient.java
42+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/shells/HttpEchoShell12.java
43+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_2628.java
44+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/Gadgets.java
45+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/JRMPClient3.java
46+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/EchoVul.java
47+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_3191.java
48+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/NoEchoVulImpl.java
49+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/StreamMessageImplEcho.java
50+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2017_3248.java
51+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/ByteUtil.java
52+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/EventData2729.java
53+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/ShellUpload.java
54+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/JNDIShellClient.java
55+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/PayloadSend.java
56+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/HttpShellClient.java
57+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2018_3245.java
58+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2016_3510.java
59+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/shells/HttpShell.java
60+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/CVE_2020_2555.java
61+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/vuls/XmlDeserailVul.java
62+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/util/ClassFiles.java
63+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/CommonsCollections3.java
64+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/App.java
65+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/SpringJndi.java
66+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/payloads/EventData2725.java
67+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/Test.java
68+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/core/Const.java
69+
/home/superman/IdeaProjects/weblogic_exploit/src/main/java/superman/shells/HttpEchoShell.java
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
superman/AppTest.class
Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1 @@
1+
/home/superman/IdeaProjects/weblogic_exploit/src/test/java/superman/AppTest.java
629 Bytes
Binary file not shown.
83.1 MB
Binary file not shown.
100 KB
Binary file not shown.

0 commit comments

Comments
 (0)