
حقن تعبير SpEL في واجهة برمجة تطبيقات Actuator لـ Spring Cloud Gateway وتنفيذ الأوامر (CVE-2022-22947) حقن حصان ذاكرة Godzilla
Spring Cloud Gateway Actuator API SpEL حقن تعبير وتنفيذ أوامر (CVE-2022-22947) حقن Godzilla memory shell
المفتاح الافتراضي هو pass بتشفير base64
ملاحظة: الكود لا يقوم بحذف جزء التوجيه، قم بحذفه بنفسك..
بيئة الاختبار: https://github.com/vulhub/vulhub/blob/master/spring/CVE-2022-22947/README.zh-cn.md
memory shell class https://github.com/whwlsfb/cve-2022-22947-godzilla-memshell