Sploitus

Exploit for Path Traversal in Oracle Weblogic Server

githubexploit Β· 2024-06-05

Exploit Code

README125 lines
## https://sploitus.com/exploit?id=017476E2-CC8F-50D5-8AB3-FAE4287ADDE7
## Badges



[![MIT License](https://img.shields.io/badge/License-MIT-green.svg)](https://choosealicense.com/licenses/mit/)
![PyPI - Version](https://img.shields.io/pypi/v/CVE-2022-21371)
![PyPI - Downloads](https://img.shields.io/pypi/dm/CVE-2022-21371)
![GitHub all releases](https://img.shields.io/github/downloads/Cappricio-Securities/CVE-2022-21371/total)
![Profile_view](https://komarev.com/ghpvc/?username=Cappricio-Securities&label=Profile%20views&color=0e75b6&style=flat)
[![Follow Twitter](https://img.shields.io/twitter/follow/cappricio_sec?style=social)](https://twitter.com/cappricio_sec)










## License

[MIT](https://choosealicense.com/licenses/mit/)



## Installation 

1. Install Python3 and pip [Instructions Here](https://www.python.org/downloads/) (If you can't figure this out, you shouldn't really be using this)

   - Install via pip
     - ```bash
          pip install CVE-2022-21371 
        ```
   - Run bellow command to check
     - `CVE-2022-21371 -h`

## Configurations 
2. We integrated with the Telegram API to receive instant notifications for vulnerability detection.
   
   - Telegram Notification
     - ```bash
          CVE-2022-21371 --chatid 
        ```
   - Open your telegram and search for [`@CappricioSecuritiesTools_bot`](https://web.telegram.org/k/#@CappricioSecuritiesTools_bot) and click start

## Usages 
3. This tool has multiple use cases.
   
   - To Check Single URL
     - ```bash
          CVE-2022-21371 -u http://example.com 
        ```
   - To Check List of URL 
      - ```bash
          CVE-2022-21371 -i urls.txt 
        ```
   - Save output into TXT file
      - ```bash
          CVE-2022-21371 -i urls.txt -o out.txt
        ```
   - Want to Learn about [`CVE-2022-21371`](https://blogs.cappriciosec.com/cve/189/CVE-2022-21371%20-%20A%20Critical%20WebLogic%20Server%20Vulnerability)? Then Type Below command
      - ```bash
          CVE-2022-21371 -b
        ```
     

  🚨 Disclaimer
  


This tool is created for security bug identification and assistance; Cappricio Securities is not liable for any illegal use. 
  Use responsibly within legal and ethical boundaries. πŸ”πŸ›‘οΈ

  ## Working PoC Video

[![asciicast](https://blogs.cappriciosec.com/uploaders/Screenshot%202024-06-17%20at%203.23.53%20PM.png)](https://asciinema.org/a/cgrBfXuAhFd85qBQNd1V9FdEN)



## Help menu

#### Get all items

```bash
πŸ‘‹ Hey Hacker  
                                                                      
       v1.0
   _______    ________    ___   ____ ___  ___       ___  ________________
  / ____/ |  / / ____/   |__ \ / __ \__ \|__ \     |__ \ Read input from txt             CVE-2022-21371 -i target.txt
  -o, --output   Write output in txt file        CVE-2022-21371 -i target.txt -o output.txt
  -c, --chatid  Creating Telegram Notification             CVE-2022-21371 --chatid yourid
  -b, --blog    To Read about CVE-2022-21371 Bug           CVE-2022-21371 -b
  -h, --help    Help Menu
```


| Argument | Type     | Description                | Examples |
| :-------- | :------- | :------------------------- | :------------------------- |
| `-u` | `--url` | URL to scan | CVE-2022-21371 -u https://target.com |
| `-i` | `--input` | filename Read input from txt  | CVE-2022-21371 -i target.txt | 
| `-o` | `--output` | filename Write output in txt file | CVE-2022-21371 -i target.txt -o output.txt |
| `-c` | `--chatid` | Creating Telegram Notification | CVE-2022-21371 --chatid yourid |
| `-b` | `--blog` | To Read about CVE-2022-21371 Bug | CVE-2022-21371 -b |
| `-h` | `--help` | Help Menu | CVE-2022-21371 -h |



## πŸ”— Links
[![Website](https://img.shields.io/badge/my_portfolio-000?style=for-the-badge&logo=ko-fi&logoColor=white)](https://cappriciosec.com/)
[![linkedin](https://img.shields.io/badge/linkedin-0A66C2?style=for-the-badge&logo=linkedin&logoColor=white)](https://www.linkedin.com/in/karthikeyan--v/)
[![twitter](https://img.shields.io/badge/twitter-1DA1F2?style=for-the-badge&logo=twitter&logoColor=white)](https://twitter.com/karthithehacker)



## Author

- [@karthithehacker](https://github.com/karthi-the-hacker/)



## Feedback

If you have any feedback, please reach out to us at contact@karthithehacker.com