Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
spring4shell-exploit-poc — Exploit a vulnerable Spring application with the Spring4Shell (CVE-2022-22965) Vulnerability. | Kitploit
Tools/GitHubGitHub/fourcorelabs/spring4shell-exploit-poc
Payload GenerationVulnerability AnalysisExploitationWeb Application ExploitationPenetration TestingLearning & Education
GitHubfourcorelabs/spring4shell-exploit-poc

spring4shell-exploit-poc

Exploit a vulnerable Spring application with the Spring4Shell (CVE-2022-22965) Vulnerability.

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View RepositoryWebsite
44124 years agoReviewed by Kitploit

Spring4Shell Exploit POC

Exploit a Spring Application vulnerable to the Spring4Shell vulnerability. Read more about Spring4shell on our blog.

Usage

Requirements: Docker and docker-compose

root@kitploit:~
$ ./exploit.sh 

asciicast

Vulnerable Spring Application

The vulnerable Spring application contains a GET and POST request handler for /helloworld/greeting. The exploit.sh script starts the app container running Tomcat 9.0 with the application packaged as a WAR and uses curl to write a webshell to http://localhost:8080/shell.jsp. The shell is used to grab the flag present at /flag inside the container's filesystem.

CVE-2022-22965

The CVE-2022-22965 with a CVSS score of 9.8 has been to the vulnerability in Spring Core allowing Remote Code Execution. The exploit is easy to achieve and hence the high CVSS score, pre-requisites for the exploit are:

  • JDK version 9+
  • Application built on Spring Or derived frameworks
  • Running Tomcat with WAR deployment

Resources

  • Spring Blog Early Announcement
  • Lunasec blog
  • English translation of chinese researcher's original report

Credits

Based on the exploit and application by reznok.

Download Tool