Comments (5)
Without investing more substantial time digging into the beanshell code, It's not immediately obvious (to me at least) how this would be used (perhaps with other gadget classes) to get code execution, so the best bet would probably be to start by asking @pwntester and @cschneider4711 if they're willing to share any information related to a PoC, though I'm guessing that they may be waiting until after their RSA Conference talk next week.
from ysoserial.
Sure, our idea is to contribute all fixed or wontfix gadgets to this awesome project.
We will wait until after RSA for sending the first PRs though
from ysoserial.
+1
from ysoserial.
I think this can be closed now :)
from ysoserial.
Yup. Forgot this was still hanging around. Closing. Excellent work, guys.
from ysoserial.
Related Issues (20)
- groovypayload.bin example question HOT 1
- Error while generating or serializing payload HOT 7
- dependency scope setting issues HOT 1
- I am getting below error while using ysoserial HOT 2
- Error generate payload HOT 1
- Option to override serialVersionUID
- Troubleshooting docs
- i can't found ysoserial.jar ! HOT 2
- ysoserial doesn't work with Java 18 HOT 1
- error HOT 1
- another way to Get PoC with RCE HOT 1
- Help understanding the CommonsBeanutils1 payload HOT 1
- Error while generating or serializing payload(openjdk17) HOT 1
- Ysoserial doesn't work with Java version 17 HOT 11
- Error: Unable to access jarfile ysoserial.jar HOT 6
- Error while generating or serializing payload (FIXED) HOT 2
- A tool for fuzzing the right payload HOT 3
- I don't know how to input next. HOT 2
- How can I create the sleep payload in the following payload with ysoserial? HOT 1
- Common Collection1 failed HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from ysoserial.