Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-36401-WoodpeckerPlugin — CVE-2024-36401-GeoServer Property 表达式注入 Rce woodpecker-framework 插件 | Kitploit
Tools/GitHubGitHub/funnydog896/cve-2024-36401-woodpeckerplugin
Payload GenerationVulnerability AnalysisExploitationShellcodeWeb Application ExploitationPenetration TestingPayload Development
GitHub

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
funnydog896/cve-2024-36401-woodpeckerplugin

CVE-2024-36401-WoodpeckerPlugin

CVE-2024-36401-GeoServer Property 表达式注入 Rce woodpecker-framework 插件

View Repository
171 year agoNot yet reviewed
Share

CVE-2024-36401-WoodpeckerPlugin

Introduction

Batch detection and exploitation of CVE-2024-36401, supporting custom memory shell injection

  1. Batch detection capability
  2. The backend has already filtered URLs (just provide the URLs)
  3. Can custom generate memory shell for injection (default memory shell injection already includes injector class name: java.lang.test [aimed at bypassing defineAnonymousClass under JDK11])

img.png

Installation

Download the source code and execute

   mvn package 

Place the jar file from target into the plugin folder under woodpecker-framework

If you don't want to compile it yourself, you can directly download CVE-2024-36401-WoodpeckerPlugin-x.x-SNAPSHOT-all.jar from the attachments and place it in the plugin folder under woodpecker-framework

PoC Detection

img.png

Exploit Usage

After PoC detection, right-click to send to Exploit

img.png

In command=xx,xx is any command to execute

When ismemshelldopen=false, commands are executed; when true, no command is executed

img_3.png

Memory Shell Injection

  1. Default memory shell injection is the Behinder Listener memory shell
  2. Supports custom memory shell injection

Custom memory shell injection: Use java-memshell-generator to generate the memory shell, note that the middleware should be Jetty

img_2.png

Or use the JMG Shell Helper plugin

img_5.png

Then replace the xx parameter in memshelldata=xx

img_4.png

Disclaimer

For learning and research purposes only. The author is not responsible for any consequences arising from the use of this project.

References

https://yzddmr6.com/posts/geoserver-memoryshell/

https://blog.csdn.net/qq_45305211/article/details/139717906

https://github.com/kN6jq/WoodpeckerPluginManager

License

  • MIT
Download Tool