Sploitus

Exploit for Expression Language Injection in Atlassian Confluence Data Center

githubexploit Β· 2024-03-26

Exploit Code

README18 lines
## https://sploitus.com/exploit?id=BB03F09C-33B3-546F-9D91-9DA25FAEB2E7
# Description:
**This is a script tool that supports multi-threaded batch detection of Confluence OGNL injection vulnerabilities (CVE-2022-26134).**

# Usage Guide:
- The target address is located in the `url.txt` file.

![Image](https://github.com/404fu/CVE-2022-26134-POC/assets/144592414/d8cc8db4-7ae2-4e4c-acd1-19f71b3b9e13)

# Results:
1. Individual target detection.
![Image](https://github.com/404fu/CVE-2022-26134-POC/assets/144592414/d185c88e-d744-484a-a701-6e7cf4ac80c9)

2. Batch detection (**Successful detections will be highlighted in yellow in the command window**).
![Image](https://github.com/404fu/CVE-2022-26134-POC/assets/144592414/7b3123ff-4fdd-452d-80e8-ad2c7cfef521)

# Disclaimer:
**This tool is intended for learning purposes only. Please comply with network security laws and regulations. Users who engage in illegal activities have nothing to do with this developer!**