├── 11.js ├── README.md └── Struts2-032.py /11.js: -------------------------------------------------------------------------------- 1 | alert(document.domain); 2 | -------------------------------------------------------------------------------- /README.md: -------------------------------------------------------------------------------- 1 | 2 | ## S2-032 命令执行漏洞批量exp 3 | ---------------- 4 | 5 | 1. 主要是利用百度搜索关键字,比如```inurl: .action 银行```,然后利用百度爬取url 6 | 2. 对同一网站的url做了去重 7 | 3. 爬取页数可在代码111行修改```urls = geturl(keyword, 1)```,keyword为程序运行时输入 8 | 9 | -------------------------------------------------------------------------------- /Struts2-032.py: -------------------------------------------------------------------------------- https://raw.githubusercontent.com/sowish/S2-032/967416c2be6db7026c4d0b4ce42f0b6e43980729/Struts2-032.py --------------------------------------------------------------------------------