2017-09-21 20:37:29 +08:00
|
|
|
|
# 0day
|
2022-01-13 14:28:43 +08:00
|
|
|
|
[](https://github.com/helloexp/0day/network) [](https://github.com/helloexp/0day/issues)
|
2022-01-13 14:29:14 +08:00
|
|
|
|
|
2017-09-21 20:37:29 +08:00
|
|
|
|
各种开源CMS 各种版本的漏洞以及EXP 该项目将不断更新
|
2022-01-13 14:11:13 +08:00
|
|
|
|
|
|
|
|
|
1. Fastjson RCE [https://github.com/dbgee/fastjson-rce](https://github.com/dbgee/fastjson-rce)
|
|
|
|
|
2. Log4j RCE [https://github.com/dbgee/log4j2_rce](https://github.com/dbgee/log4j2_rce)
|
|
|
|
|
3. redis RCE [https://github.com/Ridter/redis-rce](https://github.com/Ridter/redis-rce)
|
|
|
|
|
4. Thinkphp RCE [https://github.com/helloexp/0day](https://github.com/helloexp/0day/tree/master/Thinkphp)
|
|
|
|
|
5. Windows RCE [https://github.com/smgorelik/Windows-RCE-exploits](https://github.com/smgorelik/Windows-RCE-exploits)
|
|
|
|
|
6. shiro 发序列化 [https://github.com/helloexp/0day/tree/master/shiro](https://github.com/helloexp/0day/tree/master/shiro)
|
2022-01-13 15:17:12 +08:00
|
|
|
|
|
2017-11-24 19:29:02 +08:00
|
|
|
|
## 为什么发起这个项目?
|
2022-01-13 15:17:12 +08:00
|
|
|
|
几个月前,我参加了一场AWD攻防比赛,发现提前收集POC对比赛有好处而且在收集这些 `payload` 的同时,也能学到许多东西.
|
2017-11-24 19:29:02 +08:00
|
|
|
|
## 问题反馈
|
2022-01-13 15:24:13 +08:00
|
|
|
|
在使用中有任何问题,欢迎反馈给我,可以直接发起 PR或issue.
|
2022-01-13 15:17:12 +08:00
|
|
|
|
|