CNVD-C-2019-48814、CVE-2019-2725 Weblogic _async remote command execution exp

April 4, 2020 · View on GitHub

The main code is based on js implementation.   Linux Payload uses Jason, Windows Payload is modified 10271, java.lang.Runtime is executed.

Environmental needs

All versions of Windows.

Usage

cve2019-2725_weblogic_rce.bat http://192.168.31.5:7001 "cat /etc/passwd"

cve2019-2725

Vulnerability information

Contact

i@Flyfishsec.uu.me