diff --git a/YApi/README.md b/YApi/README.md new file mode 100644 index 0000000..1d940d1 --- /dev/null +++ b/YApi/README.md @@ -0,0 +1,9 @@ +# YApi Unauthorized Creation User And Mock RCE + +Yapi is not authorized to create an account and can create a task in the background. Any command can be specified by the command parameter + +**[FOFA](https://fofa.so/result?qbase64=YXBwPSJDaXRyaXgtQURDIg%3D%3D) query rule**: app="YAPI" + +# Demo + +![YApi Unauthorized Creation User And Mock RCE](.\YApi Unauthorized Creation User And Mock RCE.gif) \ No newline at end of file diff --git a/YApi/YApi Unauthorized Creation User And Mock RCE.gif b/YApi/YApi Unauthorized Creation User And Mock RCE.gif new file mode 100644 index 0000000..9a38e56 Binary files /dev/null and b/YApi/YApi Unauthorized Creation User And Mock RCE.gif differ