ColdFusionPwn | Exploitation Tool for CVE-2017-3066 targeting Adobe
kandi X-RAY | ColdFusionPwn Summary
kandi X-RAY | ColdFusionPwn Summary
ColdFusionPwn is a Java library. ColdFusionPwn has no bugs, it has no vulnerabilities, it has build file available, it has a Permissive License and it has low support. You can download it from GitHub.
The tool allows you to generate serialized AMF-payloads to exploit the missing input validation of allowed classes. For details see our blog post.
The tool allows you to generate serialized AMF-payloads to exploit the missing input validation of allowed classes. For details see our blog post.
Support
Quality
Security
License
Reuse
Support
ColdFusionPwn has a low active ecosystem.
It has 59 star(s) with 22 fork(s). There are 6 watchers for this library.
It had no major release in the last 12 months.
There are 0 open issues and 2 have been closed. On average issues are closed in 0 days. There are no pull requests.
It has a neutral sentiment in the developer community.
The latest version of ColdFusionPwn is 0.0.1
Quality
ColdFusionPwn has 0 bugs and 0 code smells.
Security
ColdFusionPwn has no vulnerabilities reported, and its dependent libraries have no vulnerabilities reported.
ColdFusionPwn code analysis shows 0 unresolved vulnerabilities.
There are 0 security hotspots that need review.
License
ColdFusionPwn is licensed under the MIT License. This license is Permissive.
Permissive licenses have the least restrictions, and you can use them in most projects.
Reuse
ColdFusionPwn releases are available to install and integrate.
Build file is available. You can build the component from source.
Installation instructions, examples and code snippets are available.
Top functions reviewed by kandi - BETA
kandi has reviewed ColdFusionPwn and discovered the below as its top functions. This is intended to give you an instant insight into ColdFusionPwn implemented functionality, and help decide if they suit your requirements.
- Main entry point
- Generate an audit message
- Generate Yso serialized payload
- Prints the usage
- Writes the object to the specified stream
- Returns the state of the payload
Get all kandi verified functions for this library.
ColdFusionPwn Key Features
No Key Features are available at this moment for ColdFusionPwn.
ColdFusionPwn Examples and Code Snippets
java -cp ColdFusionPwn-0.0.1-SNAPSHOT-all.jar:ysoserial-master-SNAPSHOT.jar com.codewhitesec.coldfusionpwn.ColdFusionPwner [-s|-e] [payload type] '[command]' [outfile]
- [-s|-e] Setter (CF11) or Externalizable Exploit (CF11/12) technique
- [
java -cp ColdFusionPwn-0.0.1-SNAPSHOT-all.jar:ysoserial-master-SNAPSHOT.jar com.codewhitesec.coldfusionpwn.ColdFusionPwner -e CommonsBeanutils1 calc.exe /tmp/out.amf
Community Discussions
No Community Discussions are available at this moment for ColdFusionPwn.Refer to stack overflow page for discussions.
Community Discussions, Code Snippets contain sources that include Stack Exchange Network
Vulnerabilities
No vulnerabilities reported
Install ColdFusionPwn
Get the latest version of ysoserial. Get ColdFusionPwn from releases.
Support
For any new features, suggestions and bugs create an issue on GitHub.
If you have any questions check and ask questions on community page Stack Overflow .
Find more information at:
Reuse Trending Solutions
Find, review, and download reusable Libraries, Code Snippets, Cloud APIs from over 650 million Knowledge Items
Find more librariesStay Updated
Subscribe to our newsletter for trending solutions and developer bootcamps
Share this Page