Open shadowsock5 opened 4 years ago
工具能跑出来key,但是无法利用。
[+] Find Valid Key: nhNhwZ6X7xzgXnnZBxWFQLwCGQtJojL3
[*] Trying Gadget: CommonsBeanutils1
[*] Trying Gadget: CommonsCollections2
[*] Trying Gadget: CommonsCollections3
[*] Trying Gadget: CommonsCollections4
[*] Trying Gadget: CommonsCollections8
[*] Trying Gadget: CommonsCollections10
[*] Trying Gadget: Jdk7u21
[*] Trying Gadget: Hibernate1
[*] Trying Gadget: Spring1
[*] Trying Gadget: Spring2
[*] Trying Gadget: JBossInterceptors1
[*] Trying Gadget: JSON1
[*] Trying Gadget: JavassistWeld1
[*] Trying Gadget: MozillaRhino1
[*] Trying Gadget: MozillaRhino2
[*] Trying Gadget: ROME
[*] Trying Gadget: Vaadin1
[-] Can not find a valid key or find a valid Gadget!
[!] Target is not vulnerable or can not exploit
这个不是你的问题,同样的 gadget 对 tomcat 有效,但是 jetty 会报错。我本地试了也是如此,另外的 weblogic等也有同样的问题。com.sun.org.apache.xalan.internal.xsltc.trax.TemplatesImpl.readObject(TemplatesImpl.java:253)
这个我最近如果有时间抽空跟下看下具体是什么原因导致的,如果有哪位师傅知道原因的话,希望赐教
tomcat6.0.0调试,只有class.forname可以加载数组类型,所以只有JRMP client可以打
有大佬碰到过么?