Enable build support by adding .buildspec.yml
Poc | Loading last commit info... | |
src/main | ||
.gitignore | ||
README.md | ||
pom.xml |
README.md
Apache Batik SSRF to RCE Jar Exploit
Component link
https://github.com/apache/xmlgraphics-batik
Blog
Usage
- Modify the line 11 in src/main/java/com.poc.Poc.java to change the command.
- Run
mvn clean package
- Exploit can be found in target/
Then you need to navigate to the Poc/ to use this exploit jar.
Poc contains:
- SSRF
- RCE via jar
- RCE via ecmascript